And in an hour it gets double IPs blocked.
$ sudo iptables -L -n|grep DROP|wc -l
2805

any idea?
Thanks

today I clear up iptables rules, and run fail2ban again.
in half of an hour, it blocked 1400+ IPs.

$ sudo iptables -L -n|grep DROP|wc -l
1407


it seems the black ips are coming endlessly.
most of the bad actions are like this one:

 postfix/smtps/smtpd[451948]: warning: unknown[211.184.190.87]: SASL LOGIN authentication failed: UGFzc3dvcmQ6

I am afraid too many iptables will slow down the performance of systems.
do you have any suggestion for handling this case?

Thanks.


--
Jeff Pang
jeffp...@aol.com
_______________________________________________
mailop mailing list
mailop@mailop.org
https://list.mailop.org/listinfo/mailop

Reply via email to