Portsentry and too many iptables rules?

Shawn Tayler stayler at xmtservices.net
Sat Jul 12 22:45:45 PDT 2008


Hi Guys,

I've been running portsentry v2.0b1 for many years, since before it was closed 
up.  I seem to remember someone spending some time with it, correcting a few 
bugs etc.  Is there a newer versions out there?  If not are there any issues 
with it, and replacements you would recommend? 

Also, how may is too many iptables drop rules?  I currently have somewhere 
around 50,000 and growing, thanks in part to portsentry, is there a better 
way to handle large blocked and drop rules quantities?

Shawn



More information about the Linux-users mailing list