Am 06.05.21 um 14:14 schrieb Paul Muster via Exim-users:
Use fail2ban to detect these attempts in Exim's logfiles and ban the
source on IP basis.
Of course we do this too, but the point is, the logfile is written with
a delay. If you have 10 connections in parallel,
it would be easier if
On Thu, May 06, 2021 at 12:14:52PM +0200, Claus Assmann via Exim-users wrote:
> On Thu, May 06, 2021, Cyborg via Exim-users wrote:
>
> > these are clients, that send "GET /..whatever HTTP/1.0"В as greeting.
>
> sendmail and postfix drop the connection at least on GET, POST,
> CONNECT, e.g.,
>
Am 06.05.2021 um 11:43 schrieb Cyborg via Exim-users:
Everyone of us sees this in their logsfiles :
2021-05-06 11:07:57 no host name found for IP address 68.183.80.168
2021-05-06 11:07:58 no host name found for IP address 68.183.80.168
2021-05-06 11:07:58 SMTP call from [68.183.80.168]
On 06/05/2021 10:43, Cyborg via Exim-users wrote:
these are clients, that send "GET /..whatever HTTP/1.0" as greeting.
I think, that exim could be reliable
Nothing is reliable when dealing in that level of bogosity.
Please raise a wishlist-level bug for this.
I'm thinking in terms of an
On Thu, May 06, 2021, Cyborg via Exim-users wrote:
> these are clients, that send "GET /..whatever HTTP/1.0"?? as greeting.
sendmail and postfix drop the connection at least on GET, POST,
CONNECT, e.g.,
421 4.7.0 Rejecting open proxy
--
## List details at
Cyborg via Exim-users (Do 06 Mai 2021 11:43:58 CEST):
>
> 2021-05-06 11:07:58 no host name found for IP address 68.183.80.168
> 2021-05-06 11:07:58 SMTP call from [68.183.80.168] dropped: too many
> unrecognized commands (last was "Accept-Encoding: gzip, deflate")
…
> I suggest:
>
> not to wait
Hi,
Everyone of us sees this in their logsfiles :
2021-05-06 11:07:57 no host name found for IP address 68.183.80.168
2021-05-06 11:07:58 no host name found for IP address 68.183.80.168
2021-05-06 11:07:58 SMTP call from [68.183.80.168] dropped: too many
unrecognized commands (last was