> ## Knowledge Base Index
> Fetch the complete knowledge base index at: https://help.serverfreak.com/sitemap.xml
> Use this file to discover available pages before exploring further.
> Pure-Markdown content can be obtained by appending a '.md' suffix to the content URLs listed in the sitemap (without the trailing slash).

# How to Detect and Prevent Brute Force Login Attacks in Direct Admin

A common method of gaining access over a server is to use a technique called a brute force attack, or dictionary attack. What the attacker will do, is use a script to try and login to an account with every possible password combination. This tends to require tens of thousands of login attempts, but eventually, the right combination will be found, and they can login normally.

Source: http://help.DirectAdmin.com/item.php?id=404


To prevent this, we can use brute force login detection system.

1.  Login to DirectAdmin as **admin**.


2. Select **Administrator Settings** under **Extra Features**.

![](https://storage.crisp.chat/users/helpdesk/website/0e35a1b5-ce97-4d12-a27e-1bbafd0ae641/5de7b951-b50c-412e-b0ed-59f52ae7a98f.png)


3. Tick on Blacklist IPs for excessive DA login attempts and you can use 10-20 value for login attempts.



4. Make sure to tick on **Prevent 127.0.0.1** from being Blacklisted. Select on **Save**.

![](https://storage.crisp.chat/users/helpdesk/website/0e35a1b5-ce97-4d12-a27e-1bbafd0ae641/ef114fb4-f7e5-4e3f-8407-00841919d1cc.png)