Thursday, March 25, 2021

Re: blacklistd analogue

On Thu, 25 Mar 2021 19:00:52 +0200, Kapetanakis Giannis
<bilias@edu.physics.uoc.gr> wrote:

> How about a distributed setup?
>
> Has anyone thought of a way getting IPs from various servers (say
> linux & fail2ban) to the central OpenBSD (pf) firewall?
>
> Ideally with history in order to punish more the frequent abusers.
>
> I had plans on looking to bgp to distribute the IPs around but maybe
> there is already a better way doing this.
>
> thanks and sorry for hijacking but I believe its quite relevant.

I did this for my machines: https://chown.me/blog/acacia

It's not clever enough to punish more the frequent abusers though.

Cheers,
Daniel

No comments:

Post a Comment