Warning: mysqli::__construct(): (HY000/1203): User howardkn already has more than 'max_user_connections' active connections in D:\Inetpub\vhosts\howardknight.net\al.howardknight.net\includes\artfuncs.php on line 21
Failed to connect to MySQL: (1203) User howardkn already has more than 'max_user_connections' active connections
Warning: mysqli::query(): Couldn't fetch mysqli in D:\Inetpub\vhosts\howardknight.net\al.howardknight.net\index.php on line 66
Article <vnlb2s$4k5c$1@dont-email.me>
Deutsch   English   Français   Italiano  
<vnlb2s$4k5c$1@dont-email.me>

View for Bookmarking (what is this?)
Look up another Usenet article

Path: news.eternal-september.org!eternal-september.org!.POSTED!not-for-mail
From: morena <morena@morena.rip>
Newsgroups: comp.os.plan9
Subject: firewall - blocklist
Date: Sat, 1 Feb 2025 15:28:45 +0100
Organization: Morena's space
Lines: 33
Approved: comp-os-plan9-admins@9srv.net
Message-ID: <vnlb2s$4k5c$1@dont-email.me>
MIME-Version: 1.0
Content-Type: text/plain; charset=UTF-8; format=flowed
Content-Transfer-Encoding: 7bit
Injection-Date: Mon, 03 Feb 2025 07:27:36 +0100 (CET)
Injection-Info: dont-email.me; posting-host="8c2d6d89c2c1ee5b02744522164c6d65";
	logging-data="1205602"; mail-complaints-to="abuse@eternal-september.org";	posting-account="U2FsdGVkX18Mw6bo7FbfdBK+Pq8K1/o1"
User-Agent: Mozilla Thunderbird
Cancel-Lock: sha1:sM2CcofnXOq10G4ZWl3Q0yA156I=
	sha1:sM2CcofnXOq10G4ZWl3Q0yA156I=
Content-Language: en-US
X-Spam-Checker-Version: SpamAssassin 3.4.6 (2021-04-09) on
	smtp.eternal-september.org
X-Auth-Sender: U2FsdGVkX1/5BZkZxt9X39vL8XG2hdxQA4zJrC3VdCs8CK9Lgc7sT8qQkk+VEW48pvuTlXt/ZmQOId/5FBvWbbAMQaYBgm6d
X-Spam-Status: No, score=-99.5 required=5.0 tests=DATE_IN_PAST_24_48,
	HEADER_FROM_DIFFERENT_DOMAINS,RCVD_IN_DNSWL_BLOCKED,SPF_HELO_NONE,
	SPF_PASS,USER_IN_WELCOMELIST,USER_IN_WHITELIST autolearn=ham
	autolearn_force=no version=3.4.6

Brave heroes of Plan 9,

Is there some simple way to make kind of firewall thing, specifically 
just to block incoming connections sources from some IP block list I 
will make?

Currently bots hitting my Plan 9 smtpd server practically every second. 
I am not looking  for more features, filters, ports. What practically 
always worked for me, is just huge IP block list. That will include 
probably tens thousand of IP addresses.

Other thing I am not sure about, how much resources does it takes if 
those bots connecting and "ehlo" to smtpd. If eventual "firewall" will 
not waste the same resources.

I have pretty hard time to get information about actual resources of any 
process. There is that stats graph which tells me nothing, ps gives me 
some number, but that is not much helpful. Something like htop would be 
cool ;/

I run Plan 9 on Raspberry Pi 4. ISP router with modem in one piece. So 
my options outside of Plan 9 machine are, ask to put ISP router into 
bridge mode and put behind it own router, or not ask anything and jut 
put some firewall machine between router and Plan 9 RPi. Not really 
excited about last two options, as it would require probably even more 
powerful machine than actual server on RPi 4.

May we boot again dear heroes

-- 
morena
nex://morena.rip