[Sysadmin] Test through cerf

Dean Mah dean.mah at gmail.com
Sat Dec 24 23:03:49 UTC 2016


On Sat, Dec 24, 2016 at 3:38 PM, William Anderson <neuro at well.com> wrote:

> On Sat, Dec 24, 2016 at 9:47 PM, Dean Mah <dean.mah at gmail.com> wrote:
> > There are two perl scripts that monitor log files for repeated attempts
> at
> > ssh and for repeated mailman subscriptions. If the scripts detect that,
> > they add the IP address to a temporary timeout. Blocking the first is
> > obvious. Blocking the second prevents a DOS attack where mailman freezes
> up
> > and stops sending mail.
>
> Yeah, but what have you done to iptables?  /sbin/iptables symlinks to
> xtables-multi, and that's zero-sized with a timestamp of today.
> iptables are managed with service iptables-persistent, and rules are
> stored in /etc/iptables/rules.v4.  Except they can't be managed
> because /sbin/iptables is broken.
>
>
I'm on the server now and see what you mean. I'm not sure how that
happened. I suggest removing and re-installing iptables.

Let me know if you want me to do that.

Dean


More information about the Sysadmin mailing list