[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

[Sheflug] Postfix with tcpwrappers



Hello..

My home server is getting hammered by what looks like a dictionary junk
email attack. Each of them is being denied as "user not known", but its
wasting my bandwidth dealing with them.

I have parsed the logs and got about 200 ip addresses that are doing it
and was wondering if postfix can be configured to just not accept the
socket connections from them, in the way tcpwrappers does..

I tried this
smtpd: ALL EXCEPT /etc/hosts_smtp.deny
sshd: ALL EXCEPT /etc/hosts_ssh.deny

The ssh lines do work, with the hosts listed being denied access,
however the smtpd line does not :( I am thinking postfix does not use
tcpwrappers?

Any ideas? Its just since 8am saturday morning.. so looks like some kind
of botnet just hammering at my domain name..

Cheers..
-- 
/\/\arc Kelly
..Just your average physicist trying to get by in a world full of normal
people...

_______________________________________________
        Sheffield Linux User's Group
  http://wwww.sheflug.org.uk/mailfaq.html
 GNU - The choice of a complete generation