Fail2ban for SPAM

November 19th, 2006

Spammers never learn, even if you block them using DNSBL, they keep trying to send from the same IP. Therefore it makes sense to use fail2ban to block them. Here's where I found the info I needed to do so:

Fail2ban sendmailFail2ban rule for postfix - link dead

Fail2ban and iptables

My postfix regexfail rules came out a bit different than the ones that Chris came up with:

failregex = NOQUEUE: reject: RCPT from \S*\[(?P\S+)\]: 554


Yearly Indexes: 2003 2004 2006 2007 2008 2009 2010 2011 2012 2013 2015 2019 2020 2022