Automatically block aggressive IPs to prevent brute force or DDOS attacks using Bash and IPtables

Oct 11th, 2014 | By

Something I do, mainly because of my ignorance of a more elegant solution, is to manually check my logs every 4 hours and the mail server logs every 2 minutes for excessive access by individual IP’s. I run a few scripts together that: Check the access.log and list off the top 10 IP’s organized by
