http://howto.biapy.com/en/debian-gnu-linux/system/security/h...
also, chrooted sftp-only accounts
http://en.wikibooks.org/wiki/OpenSSH/Cookbook/SFTP#Chrooted_...
Another solution that is much easier to configure compared to iptables/fail2ban.
http://howto.biapy.com/en/debian-gnu-linux/system/security/h...
also, chrooted sftp-only accounts
http://en.wikibooks.org/wiki/OpenSSH/Cookbook/SFTP#Chrooted_...