(Search in the forums but can’t find anything.)
How do you manage (/handle) scanning bots like stretchoid, deepfield…etc
I do not like to find these sniffing ip’s in the postfix logs 200+ every day!
I use a fail2ban regex rule to block them:
connect from .*.(deepfield.net|stretchoid.com|censys-scanner.com|shadowserver.org)[[0-9a-fA-F.:]+]
Any thoughts on this?