Since I enabled the email notification for invalid web&ssh logins, I have been receiving more than 2000 emails like the following from root@rf600vpn.ampco.com warning me from the invalid login attempts.

ADDITIONAL INFORMATION:

*****
Invalid SSH login attempt by user "france" from ipaddress xxx.xxx.xxx.xxx.

Date of Access :- 10/19/2005.

Time of Access :- 22:08:50.

Reason :- No user.

****

Can I group all of these messages into 1 big daily message?
Can I stop or is anything I can do for blocking these attempts?


RESPONSE:

These attacks are very common on the Internet. To prevent this from happening, change your ssh access port from 22 to 222.