On 05/07/2013 11:24, Daniel Case wrote:
Why not just null route the IP address
Just a quick note on this if you are doing it for the first time.
Some addresses can have thousands of NATed computers behind them. Or, if
the address is a VPN provider end point, then it will mean your system
can not be reached by many many people.
Just remember this when you block an IP, as six months from now you may
be chasing some other connectivity issue caused by the block, or the
next one, and so on...
Some simple checks before doing this might involve a reverse domain
lookup on the address or a GeoIP on the address. Finally, simply
remember that you did it, and maybe consider always removing bans after
a certain amount of time: 3-6 months, perhaps, hopefully after the idiot
harassing your server has moved on to doing something else...
Just my $0.02 worth,
Ash
--
---
Ashley Norris
Oxford, UK
+44 7414 661 023
----------------