today I clear up iptables rules, and run fail2ban again.
in half of an hour, it blocked 1400+ IPs.
$ sudo iptables -L -n|grep DROP|wc -l
1407
it seems the black ips are coming endlessly.
most of the bad actions are like this one:
postfix/smtps/smtpd[451948]: warning: unknown[211.184.190.87]: SASL
LOGIN authentication failed: UGFzc3dvcmQ6
I am afraid too many iptables will slow down the performance of systems.
do you have any suggestion for handling this case?
Thanks.
--
Jeff Pang
jeffp...@aol.com
_______________________________________________
mailop mailing list
mailop@mailop.org
https://list.mailop.org/listinfo/mailop