today I clear up iptables rules, and run fail2ban again.
in half of an hour, it blocked 1400+ IPs.

$ sudo iptables -L -n|grep DROP|wc -l
1407


it seems the black ips are coming endlessly.
most of the bad actions are like this one:

postfix/smtps/smtpd[451948]: warning: unknown[211.184.190.87]: SASL LOGIN authentication failed: UGFzc3dvcmQ6

I am afraid too many iptables will slow down the performance of systems.
do you have any suggestion for handling this case?

Thanks.

--
Jeff Pang
jeffp...@aol.com
_______________________________________________
mailop mailing list
mailop@mailop.org
https://list.mailop.org/listinfo/mailop

Reply via email to