Having trouble denying an ip.

I'm running linux/apache, and I'm using this to block an ip

iptables -A INPUT -s 85.158 -j DROP

But my mail filter program still says it's still getting connections from that ip, and it overwhelms the system:

Mar 31 08:37:19 [1267]: Rejected connection from 85.158.138.179:11449 (busy), ceiling is 5 slots
Mar 31 08:37:19 [1267]: Rejected connection from 85.158.138.179:55879 (busy), ceiling is 5 slots

I also use apf, and have blocked it through that,

/usr/local/sbin/apf -d 85.158.

but it's still getting through.

Any ideas on what to do or why this isn't working?

Does iptables have to be restarted or anything?  If so, how?

thanks,  Chris
St_Aug_Beach_BumAsked:
Who is Participating?
 
fosiul01Connect With a Mentor Commented:
service iptables save
service iptables restart

0
 
fosiul01Commented:
yes, you need to save iptables rules after inserting

then restart the iptables

0
 
St_Aug_Beach_BumAuthor Commented:
Thank you, how do I do that?
0
Free Tool: Site Down Detector

Helpful to verify reports of your own downtime, or to double check a downed website you are trying to access.

One of a set of tools we are providing to everyone as a way of saying thank you for being a part of the community.

 
St_Aug_Beach_BumAuthor Commented:
ah, thank you, that seems to have done it!  dam spammers!
0
 
fosiul01Commented:
are you trying to add those Ip one by one by hand ??

then you will go mad!!

use fail2ban, or portsentry

any attemept more then 3 or 4 times, those will block those Ip automaticaly
0
 
St_Aug_Beach_BumAuthor Commented:
Thank you, normally I don't have to, my spam program, mailstripper, takes care of things pretty well.  This was move of a denial of service type thing (I guess), just overwhelming my server with junk mail, more than it could handle, so legit mails couldn't get through.

I'll take a look at these programs right now.  
0
 
St_Aug_Beach_BumAuthor Commented:
Not saying it was a dos attack on purpose, but the amount of spam coming from that ip had that effect on my mail services.
0
Question has a verified solution.

Are you are experiencing a similar issue? Get a personalized answer when you ask a related question.

Have a better answer? Share it in a comment.

All Courses

From novice to tech pro — start learning today.