Welcome to the GoFuckYourself.com - Adult Webmaster Forum forums.

You are currently viewing our boards as a guest which gives you limited access to view most discussions and access our other features. By joining our free community you will have access to post topics, communicate privately with other members (PM), respond to polls, upload content and access many other special features. Registration is fast, simple and absolutely free so please, join our community today!

If you have any problems with the registration process or your account login, please contact us.

Post New Thread Reply

Register GFY Rules Calendar
Go Back   GoFuckYourself.com - Adult Webmaster Forum > >
Discuss what's fucking going on, and which programs are best and worst. One-time "program" announcements from "established" webmasters are allowed.

 
Thread Tools
Old 01-28-2004, 05:17 AM   #1
Merrioc
Confirmed User
 
Join Date: Jul 2003
Posts: 249
Members area security?

what do you use to protect vs brute force and password sharing?

Pennywize?
STH?
other?
Merrioc is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 01-28-2004, 05:33 AM   #2
$5 submissions
I help you SUCCEED
 
$5 submissions's Avatar
 
Industry Role:
Join Date: Nov 2003
Location: The Pearl of the Orient Seas
Posts: 32,195
Pennywize seems to be the most used.
$5 submissions is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 01-28-2004, 06:30 AM   #3
pennywize_v3
Registered User
 
Join Date: Oct 2002
Posts: 55
hi Merrioc

If you would like to try Pennywize free, just jump on the website and sign up. Give me a yell and i'll make sure one of my tech guys does the installation for you ASAP.

Thanks,


Steve
pennywize_v3 is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 01-28-2004, 06:33 AM   #4
goBigtime
Confirmed User
 
Join Date: Nov 2002
Posts: 7,761
MemLogin from Paysite Powertools and iProtect
goBigtime is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 01-28-2004, 06:55 AM   #5
Trax
[----------------------]
 
Join Date: Aug 2001
Posts: 14,486
proxypass seems to be one of the best
Trax is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 01-28-2004, 07:54 AM   #6
FireFoz
Confirmed User
 
Join Date: Apr 2002
Posts: 480
I buillt my own, its the best
(see sig)
__________________
FireFoz is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 01-28-2004, 08:48 AM   #7
badseed
Confirmed User
 
Join Date: Dec 2002
Location: Toronto
Posts: 213
Quote:
Originally posted by pennywize_v3
hi Merrioc

If you would like to try Pennywize free, just jump on the website and sign up. Give me a yell and i'll make sure one of my tech guys does the installation for you ASAP.

Thanks,


Steve
Hi, I emailed you twice asking for a trail and got no answer about two weeks ago.
__________________
SIG TOO BIG! Maximum 120x60 button and no more than 3 text lines of DEFAULT SIZE and COLOR. Unless your sig is for a GFY top banner sponsor, then you may use a 624x80 instead of a 120x60.
badseed is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 01-28-2004, 09:35 AM   #8
fsfaz
Confirmed User
 
Join Date: Apr 2003
Location: Hollyweird, CA
Posts: 747
Check out iprotect. It's pretty cool. Lots of features.

Compiles directly into Apache and you don't get charged on a per member basis. The license also allows use on multiple servers.

http://www.digital-concepts.net/cgi-iprotect.html


Well worth it.
fsfaz is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 01-28-2004, 06:29 PM   #9
raymor
Confirmed User
 
Join Date: Oct 2002
Posts: 3,745
Strongbox is a whole new approach that is WAY above and beyond
anything like Pennywize.
Not only does it keep the hurlers from getting in, but it discourages
them from even continueing the attack and slowing your server.
It protects from hurlers (brute force attacks), password sites, and various
other evils.
Unlike PennyWize, Password Sentry, or other old fashioned approaches,
Strongbox is 100% compatible with the latest versions of Microsoft Media
Player.
All that, and the price is definitely right.
Several of the well know members of this board, TLA's, and
GFY use it on all of their pay sites and swear by it.

For more information, see:
http://webmastersguide.com/?htaccess-cgi/strongbox/
__________________
For historical display only. This information is not current:
support@bettercgi.com ICQ 7208627
Strongbox - The next generation in site security
Throttlebox - The next generation in bandwidth control
Clonebox - Backup and disaster recovery on steroids
raymor is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 01-28-2004, 06:30 PM   #10
liquidmoe
Confirmed User
 
Join Date: Mar 2002
Location: NY
Posts: 4,994
Mostly I see people using Pennywize although iprot is also getting a few more users these days.
__________________

Take Luck!
liquidmoe is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 01-28-2004, 06:31 PM   #11
Heather Hamptons
Confirmed User
 
Join Date: Oct 2003
Location: Virginia
Posts: 2,306
Password Sentry all the way!
__________________
SIG TOO BIG! Maximum 120x60 button and no more than 3 text lines of DEFAULT SIZE and COLOR. Unless your sig is for a GFY top banner sponsor, then you may use a 624x80 instead of a 120x60.
Heather Hamptons is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 01-28-2004, 06:38 PM   #12
SoundMan
So Fucking Banned
 
Join Date: Nov 2003
Location: MidWest
Posts: 3,471
i see this posted every week or 2..
SoundMan is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 01-28-2004, 06:57 PM   #13
alan-l
Confirmed User
 
Join Date: May 2003
Location: look behind you
Posts: 2,477
We used Pennywize for our sites, very good stuff, nothing bad to say about it, but now we use our own protection
alan-l is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 01-30-2004, 01:06 AM   #14
oyvind
Confirmed User
 
Join Date: Feb 2003
Location: Norway
Posts: 63
I run sites like http://www.hegre-archives.com and http://www.galitsin-archives.com and they are under constant brute force attacks. I have tried all the programs out there and there is no doubt about which one is the best....its proxypass

look here:
http://www.proxypass.com/

the problem with the other once...including pennywize is that they are to slow to stop the heavy attacks before the server(s) goes red and the surfers gets pissed. Before i started using proxypass hackers managed to halt the servers many times....after proxypass....it has never happened :-)

...and one more thing...proxypass works perfect with load balanced systems

Last edited by oyvind; 01-30-2004 at 01:11 AM..
oyvind is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 01-30-2004, 01:08 AM   #15
codymc12
Confirmed User
 
Join Date: May 2003
Posts: 719
Quote:
Originally posted by goBigtime
MemLogin from Paysite Powertools and iProtect
codymc12 is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 01-30-2004, 01:09 AM   #16
pamphage
Confirmed User
 
Join Date: Jan 2003
Location: Hollywood, CA
Posts: 3,569
Quote:
Originally posted by oyvind
I run sites like http://www.hegre-archives.com and http://www.galitsin-archives.com and they are under constant brute force attacks. I have tried all the programs out there and there is no doubt about which one is the best....its proxypass

look here:
http://www.proxypass.com/

the problem with the other once...including pennywize is that they are to slow to stop the heavy attacks before the server(s) goes red and the surfers gets pissed. Before i started using proxypass hackers managed to halt the servers many times....after proxypass....it has never happened :-)
galitsin

__________________
SIG TOO BIG! Maximum 120x60 button and no more than 3 text lines of DEFAULT SIZE and COLOR.
Unless your sig is for a GFY top banner sponsor, you may use a 624x80 instead of a 120x60.
Let me repeat... A 120 x 60 button and no more that 3 lines of DEFAULT SIZE AND COLOR text.
pamphage is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 01-30-2004, 02:18 AM   #17
myneid
Confirmed User
 
myneid's Avatar
 
Industry Role:
Join Date: Jan 2003
Location: Los Angeles
Posts: 736
personally, i have written my own custom mod_perl module to do authentication and i handle this stuff in there with mysql tables.

if you are looking something to stop heavy load there is this great product you can buy which is a hardware box that will stop the hit from hitting your server like a firewall. its very advanced and very awsome.

its called v-secure netprotect vrom arces

www.arces.com
__________________
Tanguy 0x7a69 inc. Programmer/President/CEO
http://www.0x7a69.com
A Leader in Programming since 1996
PHP, Ruby on Rails, MySQL, PCI DSS, and any Technical Consulting
myneid is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 01-30-2004, 04:18 AM   #18
spooky181
Confirmed User
 
Join Date: Jul 2003
Location: back of beyond
Posts: 2,951
I use pennywize for my paysite and program...
spooky181 is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 01-30-2004, 05:00 AM   #19
DeadFidel
Confirmed User
 
DeadFidel's Avatar
 
Join Date: Jul 2003
Location: This was my wife circa 2002
Posts: 6,760
Virtual solution's Sentry!
DeadFidel is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 01-30-2004, 06:04 AM   #20
Alex Xe
Guest
 
Posts: n/a
We create own protect software.
If you have programmer in team, it will do it in 2 days maximum.
  Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 01-30-2004, 06:13 AM   #21
WankTank
Confirmed User
 
Join Date: Jan 2004
Location: toronto
Posts: 595
I think im going to go with pennywize when I get my paysite up.
But we'll see.
WankTank is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 01-30-2004, 06:24 AM   #22
Merrioc
Confirmed User
 
Join Date: Jul 2003
Posts: 249
tried pennywize
um great product does the jobs, waste my traffic. I want more control based on the user name what I do with it (IE known password list thats prolific redirect, common AOLer let me unban bruteforce redirect to all over the place ) can't do that with your product.



I tried "stop that hacker" hated it cause it deleted the user and pass from the .htpasswd file, which sucked when it was someone on an AOL proxy.

wrote my own... got the password sharing stopped nicely plus I utalize the traffic rather then just going to a block page.

bruteforce, use an apache mod, but I may be looking for a custom solution from someone.

thanx for all the feedback at least I know I'm on the right track
Merrioc is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 02-09-2004, 10:01 AM   #23
proust
Registered User
 
Join Date: Sep 2003
Location: Netherlands
Posts: 58
As a strongbox user i'd recommend it to anyone.
Strongbox rules!
Instead of vulnerable patch ups, strongbox throws in a unique crypto solution which identifies 'bad folk' and takes action accordingly.
It runs on your own server, no montly fees and cool reports!
'Brute force attacks' , 'password sharing' , "referer spoofing" , 'slurping' , "attacks from open proxies" , you name it ,it aint hurting me!
proust is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 02-09-2004, 10:23 AM   #24
Dennis69
Confirmed User
 
Join Date: Feb 2003
Location: Dreamland
Posts: 1,685
Quote:
Originally posted by proust
As a strongbox user i'd recommend it to anyone.
Strongbox rules!
Instead of vulnerable patch ups, strongbox throws in a unique crypto solution which identifies 'bad folk' and takes action accordingly.
It runs on your own server, no montly fees and cool reports!
'Brute force attacks' , 'password sharing' , "referer spoofing" , 'slurping' , "attacks from open proxies" , you name it ,it aint hurting me!
Totally Agree! Great Script! Great Guy
Dennis69 is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 02-09-2004, 11:12 AM   #25
jovigirl
Confirmed User
 
jovigirl's Avatar
 
Join Date: Apr 2003
Location: On the edge
Posts: 1,796
Quote:
Originally posted by Heather Hamptons
Password Sentry all the way!
exactly
www.pregnantschool.com/members/
__________________
ICQ :333-548-380
jovigirl is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Post New Thread Reply
Go Back   GoFuckYourself.com - Adult Webmaster Forum > >

Bookmarks



Advertising inquiries - marketing at gfy dot com

Contact Admin - Advertise - GFY Rules - Top

©2000-, AI Media Network Inc



Powered by vBulletin
Copyright © 2000- Jelsoft Enterprises Limited.