Havok wrote:
Someone in the know tell me about fail2ban
Good thing, bad thing or?
Good thing. Very configurable for all your services, though preset mainly
for linux services like postfix, dovecot, ssh, apache, so you'll have to do some tweaking to get it to work right.
Also, if you have a very busy system with a lot of attempts, you could find your iptables will fill up quickly which can be a memory hog. Every month or
so I go through and look for major offenders from multiple IPs in the same subnet. I then put them in a "permaban" chain.
--- SBBSecho 3.11-Linux
* Origin: End Of The Line BBS - endofthelinebbs.com (77:1/119)