I get dozens of brute force external ssh login attempts into my internal mail and web servers everyday. I wish for an option to populate a list of IP nets and make one rule to block all to/from these hosts. I'd rather not define a network or host in webadmin (ie. Definitions -> Networks -> New Definition -> Network or Host and then one Network Group which includes all of those definitions) for every one of these nets just to be able to block them. This may sound more like an ACL on an external router sort of thing, but a firewall should allow a simple and convenient manner to block a large disparate number of nets.
I have seen a few posts regarding manually updating iptables.local. If that is the best and preferred solution could someone please shout it out. Or is there something I'm missing in the webadmin interface?
Thanks!
This thread was automatically locked due to age.