Tools like fail2ban and sshguard do not add any security. They just reduce log noise, at the expense of having to parse log files with all the security problems it entails.
@juliank They are nice thing to have but I think everyone should go through their sshd_config files for understanding of what can be done to increase security
@nikolal I don't think they're a nice thing to have. Rate limiting in the firewall has the same effect, without opening up an entirely new attack vector.