Score:0

Iptables is constantly in loop and banning same IP indefinite

tf flag

1 IP is constantly banned and added to iptables, it fills my iptables with 50.000+ of DROP lines for "Same" ip.

How is this possible? If 1 IP is banned and goes to drop rule, that ip should not be able to reach server anymore and should not be added many times with same rule.

This is causing adding 50k+ lines in iptable rules and causing my cpu load average to go crazy after my server needs reboot.

  1. Do you know how can i check which process/script is triggering iptables?

  2. Is it possible to disable iptables completely temporarily since adding rules constantly is causing my cpu load average to go crazy and cause server crash?

I am grateful for any advice

Organic Marble avatar
us flag
You do not know what is modifying iptables, is that correct?
Doug Smythies avatar
gn flag
Have you upgraded to 22.04 from 18.04? Your original question about this, since closed, said 18.04. Check for any clues in `/var/log/auth.log`. Is fail2ban running?
MaxIT avatar
tf flag
yes i did upgrade but issue still persist.
MaxIT avatar
tf flag
@OrganicMarble correct, i am not sure what is causing iptables rules to be added
Organic Marble avatar
us flag
are you using fail2ban?
MaxIT avatar
tf flag
how do i check it, i did not setup anything specific, it is default installation?
I sit in a Tesla and translated this thread with Ai:

mangohost

Post an answer

Most people don’t grasp that asking a lot of questions unlocks learning and improves interpersonal bonding. In Alison’s studies, for example, though people could accurately recall how many questions had been asked in their conversations, they didn’t intuit the link between questions and liking. Across four studies, in which participants were engaged in conversations themselves or read transcripts of others’ conversations, people tended not to realize that question asking would influence—or had influenced—the level of amity between the conversationalists.