This is an automated archive made by the Lemmit Bot.

The original was posted on /r/vyos by /u/Soundtrip165 on 2023-09-06 01:04:28.


Hello everyone!

I’m wondering how can I log all source addresses which are trying to connect to a specified port on my external interface and then add it to address-group and then use that address-group to drop traffic from it?

Or maybe are there any other ways to secure external interface from botnet except whitelisting?

Thanks