After using Pennywize for a few months I am finding it does jack squat against commited brute force hackers.
If the guy has a lot of proxies, or repeats IP's slowly he always gets through.
I have it set to block any IP for 3000 seconds if there are more than 3 attempts, but if I look at the files created for rewrite in the pennywize directory they are present for no more than 2 minutes.
As far as I can tell it doesn't work; we have a support request in but I don't see what we are doing wrong.
So what can we use? We need something that will block proxy attacks and also excessive multiple id logins WITHOUT pissing off all of our AOL users.
