[Dovecot] IP Tables block for POP3 attacks with Dovecot

David McBride dwm at tastycake.net
Sun Apr 8 23:05:41 EEST 2007

Sean Kamath wrote:

> Gotta love PF on OpenBSD (and FreeBSD).  It was a simple addition to the 
> pass rule:

Linux iptables has a similar facility.  See the 'RECENT' iptables module:


Be aware that older Linux kernel's RECENT implementation was buggy, and would 
stop functioning properly after about 25 days of uptime - I think you'll want to 
be running >= 2.6.18 to avoid it properly.

(See also: http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=332231)

David McBride <dwm at tastycake.net>

