Hello Gurus
I have a linux box which is trying to connect to HOST-1 via ssh.Recently i have been submitted following entries from 'syslog' from this HOST-1.
As you can see,there are 3 failed login attempts logged for my user 'eatcid' coming from my linux box to this HOST-1 which is AIX.The fourth entry ,although,shows successful entry.
I am not much of administrator and do not know what this information means.Can someone please explain what this indicates and how critical it is?
<IP> == My Linux Box
HTML Code:
Logged At Logging Device Name Target Resource Intrusion Action ID Intrusion Outcome ID Description
Jan 20, 2010 6:28:22 AM EST <HOST-1> eatcid Login Failed forwarded from <HOST-1>: sshd 1278052 : Failed password for eatcid from <IP> port 39687 ssh2
Jan 20, 2010 6:28:22 AM EST <HOST-1> eatcid Login Failed forwarded from <HOST-1>: sshd 1278052 : Failed password for eatcid from <IP> port 39687 ssh2
Jan 20, 2010 6:28:22 AM EST <HOST-1> eatcid Login Failed forwarded from <HOST-1>: sshd 1278052 : Failed password for eatcid from <IP> port 39687 ssh2
Jan 20, 2010 6:28:38 AM EST <HOST-1> eatcid Login Succeeded forwarded from <HOST-1>: sshd 1278056 : Accepted password for eatcid from <IP> port 39809 ssh2
Regards
Abhi