Deutsch English Français Italiano |
<vnlb2s$4k5c$1@dont-email.me> View for Bookmarking (what is this?) Look up another Usenet article |
Path: news.eternal-september.org!eternal-september.org!.POSTED!not-for-mail From: morena <morena@morena.rip> Newsgroups: comp.os.plan9 Subject: firewall - blocklist Date: Sat, 1 Feb 2025 15:28:45 +0100 Organization: Morena's space Lines: 33 Approved: comp-os-plan9-admins@9srv.net Message-ID: <vnlb2s$4k5c$1@dont-email.me> MIME-Version: 1.0 Content-Type: text/plain; charset=UTF-8; format=flowed Content-Transfer-Encoding: 7bit Injection-Date: Mon, 03 Feb 2025 07:27:36 +0100 (CET) Injection-Info: dont-email.me; posting-host="8c2d6d89c2c1ee5b02744522164c6d65"; logging-data="1205602"; mail-complaints-to="abuse@eternal-september.org"; posting-account="U2FsdGVkX18Mw6bo7FbfdBK+Pq8K1/o1" User-Agent: Mozilla Thunderbird Cancel-Lock: sha1:sM2CcofnXOq10G4ZWl3Q0yA156I= sha1:sM2CcofnXOq10G4ZWl3Q0yA156I= Content-Language: en-US X-Spam-Checker-Version: SpamAssassin 3.4.6 (2021-04-09) on smtp.eternal-september.org X-Auth-Sender: U2FsdGVkX1/5BZkZxt9X39vL8XG2hdxQA4zJrC3VdCs8CK9Lgc7sT8qQkk+VEW48pvuTlXt/ZmQOId/5FBvWbbAMQaYBgm6d X-Spam-Status: No, score=-99.5 required=5.0 tests=DATE_IN_PAST_24_48, HEADER_FROM_DIFFERENT_DOMAINS,RCVD_IN_DNSWL_BLOCKED,SPF_HELO_NONE, SPF_PASS,USER_IN_WELCOMELIST,USER_IN_WHITELIST autolearn=ham autolearn_force=no version=3.4.6 Brave heroes of Plan 9, Is there some simple way to make kind of firewall thing, specifically just to block incoming connections sources from some IP block list I will make? Currently bots hitting my Plan 9 smtpd server practically every second. I am not looking for more features, filters, ports. What practically always worked for me, is just huge IP block list. That will include probably tens thousand of IP addresses. Other thing I am not sure about, how much resources does it takes if those bots connecting and "ehlo" to smtpd. If eventual "firewall" will not waste the same resources. I have pretty hard time to get information about actual resources of any process. There is that stats graph which tells me nothing, ps gives me some number, but that is not much helpful. Something like htop would be cool ;/ I run Plan 9 on Raspberry Pi 4. ISP router with modem in one piece. So my options outside of Plan 9 machine are, ask to put ISP router into bridge mode and put behind it own router, or not ask anything and jut put some firewall machine between router and Plan 9 RPi. Not really excited about last two options, as it would require probably even more powerful machine than actual server on RPi 4. May we boot again dear heroes -- morena nex://morena.rip