ShellTer is an iptables-based firewall. It supports port forwarding, blacklisting, whitelisting, etc. Pretty much all the standard features that you'd expect from a firewall.
What sets it apart from the rest is that it has built-in SSH brute force protection. It is easy to configure and has an interactive CLI installer. The way it works is it keeps checking your server logs and when it notices an attack it adds the IP of those machines to an iptables drop rule. You can also specify for how long you want the program to keep those IPs blocked for (7 days, forever, etc). It's all very easily customized and it's quite powerful. I tested it on various distributions and machines, including a 600MHz Celeron, with no noticeable performance degradation. It marks the spot that it last checked and starts off from that point on, which prevents a lot of overhead. Enjoy :-)

Please let me know if you have any questions/comments/suggestions. marcospinto@dipconsultants.com

Download ShellTer here

