I need some basic advice on how to stop bruteforce attacks on my machine. I haven't been compromised, but I am tired of seeing MASSIVE amounts of attempts on my machine coming from China.
I am currently using the built in Brute Force Monitor in DA right now and its doing well, but I am not 100% sure on how to block an entire range of IPs using the block_ips.txt file.
I have found this list: http://www.wizcrafts.net/chinese-iptables-blocklist.html and I was wondering if I could just copy and paste that entire list (containing Ip ranges with /24 and /16 and such) into the blocked_ips.txt list.
Am I able to manually type in an ip like this for example: 100.200.300.000/24 into the blocked_ips.txt list and it block the entire /24 range?
Also, I am considering installing CSF since I have seen alot of recommendations on it. I have searched the forums for a how-to guide, but I cannot find one. I didn't want to install it incorrectly in DA. Does anyone have a link bookmarked they could share for a how-to on installing CSF on my DA machine?
Thanks alot!
I am currently using the built in Brute Force Monitor in DA right now and its doing well, but I am not 100% sure on how to block an entire range of IPs using the block_ips.txt file.
I have found this list: http://www.wizcrafts.net/chinese-iptables-blocklist.html and I was wondering if I could just copy and paste that entire list (containing Ip ranges with /24 and /16 and such) into the blocked_ips.txt list.
Am I able to manually type in an ip like this for example: 100.200.300.000/24 into the blocked_ips.txt list and it block the entire /24 range?
Also, I am considering installing CSF since I have seen alot of recommendations on it. I have searched the forums for a how-to guide, but I cannot find one. I didn't want to install it incorrectly in DA. Does anyone have a link bookmarked they could share for a how-to on installing CSF on my DA machine?
Thanks alot!