Lately I've notice bunches of spamdyke DENIED_RDNS_MISSING messages,
repetitively from the same IP address, one after another. How stupid is
that? ;)
Has anyone set up fail2ban to block these at the firewall after a
certain number of them is received in a certain time period? I figure
this might help to keep the logs a little cleaner.
Which makes me think, won't that distort any spam statistical gathering
from the logs?
So another question. Does/can fail2ban log rejections so they can be
counted in some manner? If fail2ban does log rejections, is there
something which indicates what type of rejection occurred? It'd be nice
to know exactly what the impact of fail2ban is. (You can't manage what
you can't measure.)
Sorry for my fail2ban ignorance. I really hope to get some time for it
some day. Your help helps. :)
Thanks.
--
-Eric 'shubes'
---------------------------------------------------------------------
To unsubscribe, e-mail: [email protected]
For additional commands, e-mail: [email protected]