diff --git a/conf/fail2ban/jail.d/postfix-extra.conf b/conf/fail2ban/jail.d/postfix-extra.conf index 2e62e70d..217b461f 100644 --- a/conf/fail2ban/jail.d/postfix-extra.conf +++ b/conf/fail2ban/jail.d/postfix-extra.conf @@ -27,5 +27,18 @@ mode = errors filter = miab-postfix-rdnsfail[mode=errors] logpath = /var/log/mail.log maxretry = 4 -findtime = 1d -bantime = 1h +findtime = 2d +bantime = 2h + +# aggressive filter against ddos etc +[postfix-aggressive] +enabled = true +mode = aggressive +filter = postfix[mode=aggressive] +port = smtp,465,submission +logpath = %(postfix_log)s +backend = %(postfix_backend)s +maxretry = 100 +findtime = 15m +bantime = 1h +