There are ways (though I can't remember what they are) to set up your system in such a way as to dynamically block IPs from which you are receiving attacks. I believe that they involve setting up iptables to work with snort (http://www.snort.org), but I can't remember for sure.
See a short and simple HOWTO which I posted on the Shorewall site, on how to use Shorewall, Portsentry, and a short/simple shell script to dynamically block incoming Bad People [tm]. May or may not do what you want, but works BEAUTIFULLY for me. Post on-list if you have any questions.
ftp://www.shorewall.net/pub/shorewall/contrib/PortsentryHOWTO.txt
-- Rodolfo J. Paiz [EMAIL PROTECTED]
-- redhat-list mailing list unsubscribe mailto:[EMAIL PROTECTED] https://www.redhat.com/mailman/listinfo/redhat-list