Some useful notes to secure a public available server.
Use Fail2ban


apt install fail2ban


Add the following to /etc/fail2ban/jail.d/defaults-debian.local:

# in seconds
bantime = 3600
maxretry = 3
backend  = auto

enabled = true
filter  = sshd
backend = systemd

Apply Changes

Run service fail2ban restart to activate the changes.