DESCR 272 B

12345
  1. watcher for the /var/log/authlog logfile detecting failed password logins
  2. for invalid users via ssh.
  3. The IP addresses from which the failed logins originate are added to the
  4. pf table "blacklist". That table can be used in pf.conf to block further
  5. access from those hosts.