On Saturday 09 November 2019 02:55:45 darb wrote: > * Gene Heskett wrote: > > I have a list of ipv4's I want fail2ban to block. But amongst the > > numerous subdirs for fail2ban, I cannot find one that looks suitable > > to put this list of addresses in so the are blocked forever. Can > > someone more familiar with how fail2ban works give me a hand? These > > are the ipv4 addresses of bingbot, semrush, yandex etc etc that are > > DDOSing me by repeatedly downloading my whole site and using up 100% > > of my upload bandwidth. > > Not sure that fail2ban is the best tool for the job. Where you already > have a list of IPs that you want to block why not just directly create > the iptables rules?
just did that, got most of them but semrush apparently has fallback addys to use. But I'm no longer being DDOSed, which was the point. Thanks. Cheers, Gene Heskett -- "There are four boxes to be used in defense of liberty: soap, ballot, jury, and ammo. Please use in that order." -Ed Howdershelt (Author) If we desire respect for the law, we must first make the law respectable. - Louis D. Brandeis Genes Web page <http://geneslinuxbox.net:6309/gene>