Lately I've notice bunches of spamdyke DENIED_RDNS_MISSING messages, repetitively from the same IP address, one after another. How stupid is that? ;)

Has anyone set up fail2ban to block these at the firewall after a certain number of them is received in a certain time period? I figure this might help to keep the logs a little cleaner.

Which makes me think, won't that distort any spam statistical gathering from the logs?

So another question. Does/can fail2ban log rejections so they can be counted in some manner? If fail2ban does log rejections, is there something which indicates what type of rejection occurred? It'd be nice to know exactly what the impact of fail2ban is. (You can't manage what you can't measure.)

Sorry for my fail2ban ignorance. I really hope to get some time for it some day. Your help helps. :)

Thanks.

--
-Eric 'shubes'


---------------------------------------------------------------------
To unsubscribe, e-mail: [email protected]
For additional commands, e-mail: [email protected]

Reply via email to