[BlueOnyx:25683] Re: login attempts after IP added to firewall reject list

Michael Stauber mstauber at blueonyx.it
Thu Nov 10 19:36:14 -05 2022


Hi Ed,

> For example, I used
> 
> firewall-cmd --permanent --add-rich-rule="rule family='ipv4' source 
> address='61.177.172.191' reject"
> on one IP address, but just today, someone/something on that IP tried to 
> login almost 800 times.
> 
> (That IP is registered in Lianyungang city, Jiangsu province, Communist 
> China.)
> 
> Was that not the correct command to use to force rejection of that IP 
> address in AlmaLinux/BlueOnyx?

Did you issue ...

firewall-cmd --reload

... after adding the rich-rule?

Here is a good tutorial that covers all the basics of Firewalld:

https://www.computernetworkingnotes.com/linux-tutorials/firewalld-rich-rules-explained-with-examples.html

-- 
With best regards

Michael Stauber



More information about the Blueonyx mailing list