3 ms·
I simply run fail2ban with a whole bunch of customer filters that will ban people very quickly. There's no need to request php or malformed urls when php is no
by securethrowaway 2y ago
I simply run fail2ban with a whole bunch of customer filters that will ban people very quickly. There's no need to request php or malformed urls when php is not used for example.
- mtekman 2y agoI used to run fail2ban, but I found it (or at least its defaults) ineffective against discouraging further requests. With iptables, you can specify the connection to hang for a period and then drop
- justsomehnguy 2y agoDefaults are set to reject. Just configure the jails or a global config.