How many ips can i ban in iptables firewall?

postcd

Well-Known Member
Oct 22, 2010
721
21
68
Hello,

how i can see how much ips blocked in iptables is too much? where can i check it. Is there any hard limit or how to determine acceptable number keeping in ming that i have 6x2.2Ghz cpu and 8gb ram + basic 7k rpm disk?
 

Infopro

Well-Known Member
May 20, 2003
17,075
524
613
Pennsylvania
cPanel Access Level
Root Administrator
Twitter
From the CSF configuration settings page for DENY_IP_LIMIT:

Limit the number of IP's kept in the /etc/csf/csf.deny file. This can be
important as a large number of IP addresses create a large number of iptables
rules (4 times the number of IP's) which can cause problems on some systems
where either the the number of iptables entries has been limited (esp VPS's)
or where resources are limited. This can result in slow network performance,
or, in the case of iptables entry limits, can prevent your server from
booting
as not all the required iptables chain settings will be correctly
configured.