note 60406 deleted from security.hiding by mazzanet
| From: | mazzanet@php.net | Date: | Fri, 06 Jan 2006 09:54:02 +0000 |
| Subject: | note 60406 deleted from security.hiding by mazzanet | ||
| References: | 1 | Groups: | php.notes |
| Request: | Send a blank email to php-notes+get-101295@lists.php.net to get a copy of this message | ||
Note Submitter: allan-wegan at allan-wegan dot de
----
I think, it's not a good idea to ban attacking host's IPs automatically. You will ban lots
of that IPs that ISPs dynamically assign to their customers as they connect to the internet. You
will ban lots of innocent people just because they got an IP assigned, that was previously used by a
script kiddy. I name that a self-DOS, as your site will become unusable for most users over time!
Additionally, i do not think, that the firewall will perform better, as the ruleset gets bigger and
bigger.