I feel this thread now need little bit of opposition for future readers. Every one should consider if it’s a good idea to set-up Mailcow netfilter to ban /16 for one year.
Let’s take @maybl8 (s) first hits, yes first 3 bans are for EU/US based most likely fine, but last one can be problematic if you are EU based. Let’s examine IP allocation by state
15% spain (10 000 IPs)
10% switzerland (6 500 IPs)
7% germany (4 600 IPs)
Yes, this range also contains allocation to more problematic states like Russia, Ukraine, Uzbekistan, Malaysia, Singapore, Syria, Iran and so
Now let’s look for same by ASNs
4% AS39572 (2 500 IPs) DataWeb Global Group B.V. seems like Netherlands privet hosting services.
2% AS16086 (1 300 IPs), DNA Finland seems like Finland ISP
2% AS25375 (1 300 IPs), Leucom Stafag / Leucom Schlatter AG seems like Switzerland ISP
2% AS39878 (1 300 IPs) PR-Link Internet seems like Austria ISP
Yes you enforce ban for let’s say some Middle east bot-net and maybe by right, but you also ban multiple services that does not do any wrong, in first ASN case even possible legit mail servers in paid hosting. And next three could be your users home ISP,…
So once again everyone should consider if 1 year ban for /16 is a good solution for him/her.