Here is my scenario - I've been running FreeBSD for many (many) years. (Please don't ask.) I've a box that's been running 9.3 for YEARS and it's "The" most reliable system in my arsenal of servers.
It's been a couple of years (to say the least) that I've written scripts, (I retired) but this is a reach-out for help and hopefully works.
My logs have been FILLED with:
...CONSTANTLY!
I let it go mostly because my saslauthd (pam) doesn't work, so I thought they'd eventually stop their script(s), but this has been going on for far too long and my syslogs are filled every day.
I'm hoping for help with an easy script that could be written to add their IP to my blackhole routes? Any suggestions? Thank you!
It's been a couple of years (to say the least) that I've written scripts, (I retired) but this is a reach-out for help and hopefully works.
My logs have been FILLED with:
Code:
Jul 26 12:59:01 rmx saslauthd[638]: do_auth : auth failure: [user=contact] [service=smtp] [realm=mydomain.com] [mech=pam] [reason=PAM auth error]
I let it go mostly because my saslauthd (pam) doesn't work, so I thought they'd eventually stop their script(s), but this has been going on for far too long and my syslogs are filled every day.
I'm hoping for help with an easy script that could be written to add their IP to my blackhole routes? Any suggestions? Thank you!