Portal Home > Knowledgebase > Articles Database > IP addresses banned on Thu Sep 13 16:32:01 SGT 2007
IP addresses banned on Thu Sep 13 16:32:01 SGT 2007
Posted by webhost4all, 09-13-2007, 08:08 AM |
Have been receiving the following warnings for more than a day. Does BFD auto execute a permanent ban or do I have to do it myself? If so, how? Also, I did a whois, found out the service provider, and sent an email regarding abuse. I have yet to receive a reply. I was wondering since its a HK IP, do I have to send the message in chinese? Would anyone be kind enough to do so?
Thanks
|
Posted by dollar, 09-13-2007, 08:12 AM |
BFD by default auto-executes the bans for you. As far as emailing the ISP it is most likely a waste of time. The machine used to brute force you is probably a "zombie" or rooted.
|
Posted by debug26, 09-13-2007, 08:16 AM |
Hello,
The IP has been blocked by BFD already so you have received the notification, you can confirm it by checking the IP address in /etc/apf/deny_hosts.rules
I think there is no need to send a notice to them, if the concern client faced any problem he will contact you.
|
Posted by webhost4all, 09-13-2007, 08:18 AM |
I meant permanent ban. As far as I know it just executed 15mins bans. Is there a way to permanent ban the IP?
|
Posted by debug26, 09-13-2007, 08:28 AM |
Hello,
You can ban the IP address permanently by using following command
apf -d IP-address
or
iptables -I INPUT -s (IP-address) -j DROP
It will add the IP address in deny list of your firewall.
|
Posted by webhost4all, 09-13-2007, 08:56 AM |
Thank you.
Does BFD do it automatically? Because its been going on for more than a day. If yes, any settings to change?
|
Posted by InfiniteTech, 09-13-2007, 02:08 PM |
This thing saved me a million! Thanks a lot.
PS: Now don't check your bank balance. :p
|
Add to Favourites Print this Article
Also Read