On Wed, 2 Apr 2003 07:54:01 -0500, Stephen Frost <sfrost@xxxxxxxxxxx> wrote in message <20030402125401.GC18434@xxxxxxxxxxxxxx>: > * Arnt Karlsen (arnt@xxxxxxx) wrote: > > On Tue, 1 Apr 2003 15:06:52 -0500, > > Stephen Frost <sfrost@xxxxxxxxxxx> wrote in message > > <20030401200652.GY18434@xxxxxxxxxxxxxx>: > > > # Bad guy detected! Add his IP to the badguy list! > > > iptables -A BADCHAIN -m recent --set --name badguy -j DROP # Add > > > IP to list > > > > ..this also shoots down the good guys with servers on dynamic dns, > > using an old recycled-by-the-isp bad guy's ip. > > That's why there's a time limit to it. ..ah, "-m recent", missed that one. ;-) -- ..med vennlig hilsen = with Kind Regards from Arnt... ;-) ...with a number of polar bear hunters in his ancestry... Scenarios always come in sets of three: best case, worst case, and just in case.