@Chime said:
Now if they can spoof IPs (not all that hard), then things get more complicated, but usually that results in other problems first.
To elaborate what she means for those unaware, I will translate.
Chime: 'Applications that can ban ips after a certain number of authorization failures are great!' slight shift in posture 'Until someone that knows that you're using one modifies their headers and blocks your IP so you can't log into your own server.'
You might even be asking, how hard is it to tell that these programs are being used? Not hard. Trivial even. They're not even recommended. By anyone. Anywhere. Except here I guess.
However if we're being fair, Security by Obscurity isn't a recommended solution either, it's just one of those things that you tack on as an after thought because you can.
Case in point (For thread necro): If you rely on either of these things for your security you've already lost.
2nd Case in Point: This is why my thread wasn't entitled: How to secure your hosting box.