Rich Freeman on 17 Aug 2018 17:08:43 -0700


[Date Prev] [Date Next] [Thread Prev] [Thread Next] [Date Index] [Thread Index]

Re: [PLUG] Linux tip: Log IP addresses, not hostnames, for use by fail2ban...


On Fri, Aug 17, 2018 at 7:38 PM Rachel plays Linux <rachelneko@gmail.com> wrote:
>
> Maintaining a home firewall and a commercial server are way different. At work I can't simply ban by county, though I can block some entire ISPs.
>
> At home I lock out damn near everything
>

While it doesn't hurt to block CN from home, I don't run fail2ban.  If
having 3 attempts vs having 3 trillion attempts at my service makes
any difference at all, then my service is broken.

Sure, blocking might help protect against zero days.  I doubt fail2ban will.

-- 
Rich
___________________________________________________________________________
Philadelphia Linux Users Group         --        http://www.phillylinux.org
Announcements - http://lists.phillylinux.org/mailman/listinfo/plug-announce
General Discussion  --   http://lists.phillylinux.org/mailman/listinfo/plug