Koozali.org: home of the SME Server

Xt GeoIP - Update

Offline gieres

  • *
  • 213
  • +0/-0
Xt GeoIP - Update
« on: September 23, 2023, 10:14:14 PM »
Hi,
During update to-day, this message appears :

Code: [Select]
Running post transaction command: /etc/e-smith/events/actions/xt_geoip_kmod
modprobe: FATAL: Module xt_geoip is in use.

Is that a bug ?

Thanks.

Offline Jean-Philippe Pialasse

  • *
  • 2,767
  • +11/-0
  • aka Unnilennium
    • http://smeserver.pialasse.com
Re: Xt GeoIP - Update
« Reply #1 on: September 24, 2023, 01:19:44 AM »
is it still baning?
check the iptables logs

Offline gieres

  • *
  • 213
  • +0/-0
Re: Xt GeoIP - Update
« Reply #2 on: September 24, 2023, 07:35:31 PM »
Hi,
It seems but I never see this type of log ; extract of one second to-day :
Code: [Select]
Sep 24 19:23:00 kooz2 GeoIP BAN: ALL IN=enp4s0 OUT= MAC=00:25:90:ac:03:fa:84:a1:d1:2a:88:bc:08:00 SRC=182.70.254.116 DST=192.168.1.10 LEN=60 TOS=00 PREC=0x00 TTL=54 ID=51638 DF PROTO=TCP SPT=56581 DPT=25 SEQ=1382027432 ACK=0 WINDOW=29200 SYN URGP=0 MARK=0
Sep 24 19:23:01 kooz2 GeoIP BAN: ALL IN=enp4s0 OUT= MAC=00:25:90:ac:03:fa:84:a1:d1:2a:88:bc:08:00 SRC=136.185.2.84 DST=192.168.1.10 LEN=60 TOS=00 PREC=0x00 TTL=54 ID=32397 DF PROTO=TCP SPT=57251 DPT=25 SEQ=3130829189 ACK=0 WINDOW=29200 SYN URGP=0 MARK=0
Sep 24 19:23:02 kooz2 GeoIP BAN: ALL IN=enp4s0 OUT= MAC=00:25:90:ac:03:fa:84:a1:d1:2a:88:bc:08:00 SRC=182.70.254.116 DST=192.168.1.10 LEN=60 TOS=00 PREC=0x00 TTL=54 ID=51639 DF PROTO=TCP SPT=56581 DPT=25 SEQ=1382027432 ACK=0 WINDOW=29200 SYN URGP=0 MARK=0
Sep 24 19:23:03 kooz2 denylog: IN=enp4s0 OUT= MAC=00:25:90:ac:03:fa:84:a1:d1:2a:88:bc:08:00 SRC=167.94.138.150 DST=192.168.1.10 LEN=44 TOS=00 PREC=0x00 TTL=35 ID=39990 PROTO=TCP SPT=52169 DPT=61551 SEQ=767237833 ACK=0 WINDOW=1024 SYN URGP=0 MARK=0
Sep 24 19:23:06 kooz2 GeoIP BAN: ALL IN=enp4s0 OUT= MAC=00:25:90:ac:03:fa:84:a1:d1:2a:88:bc:08:00 SRC=182.70.254.116 DST=192.168.1.10 LEN=60 TOS=00 PREC=0x00 TTL=54 ID=51640 DF PROTO=TCP SPT=56581 DPT=25 SEQ=1382027432 ACK=0 WINDOW=29200 SYN URGP=0 MARK=0
Sep 24 19:23:07 kooz2 GeoIP BAN: ALL IN=enp4s0 OUT= MAC=00:25:90:ac:03:fa:84:a1:d1:2a:88:bc:08:00 SRC=200.24.113.30 DST=192.168.1.10 LEN=60 TOS=00 PREC=0x00 TTL=46 ID=55395 DF PROTO=TCP SPT=39766 DPT=25 SEQ=3793650118 ACK=0 WINDOW=5808 SYN URGP=0 MARK=0
Sep 24 19:23:07 kooz2 denylog: IN=enp4s0 OUT= MAC=00:25:90:ac:03:fa:84:a1:d1:2a:88:bc:08:00 SRC=103.165.93.246 DST=192.168.1.10 LEN=60 TOS=00 PREC=0x00 TTL=49 ID=41454 DF PROTO=TCP SPT=60068 DPT=25 SEQ=251477723 ACK=0 WINDOW=14400 SYN URGP=0 MARK=0
Sep 24 19:23:10 kooz2 GeoIP BAN: ALL IN=enp4s0 OUT= MAC=00:25:90:ac:03:fa:84:a1:d1:2a:88:bc:08:00 SRC=200.24.113.30 DST=192.168.1.10 LEN=60 TOS=00 PREC=0x00 TTL=46 ID=55396 DF PROTO=TCP SPT=39766 DPT=25 SEQ=3793650118 ACK=0 WINDOW=5808 SYN URGP=0 MARK=0
Sep 24 19:23:13 kooz2 GeoIP BAN: ALL IN=enp4s0 OUT= MAC=00:25:90:ac:03:fa:84:a1:d1:2a:88:bc:08:00 SRC=190.123.90.180 DST=192.168.1.10 LEN=60 TOS=00 PREC=0x00 TTL=54 ID=43722 DF PROTO=TCP SPT=43959 DPT=25 SEQ=3010411297 ACK=0 WINDOW=14600 SYN URGP=0 MARK=0
Sep 24 19:23:14 kooz2 GeoIP BAN: ALL IN=enp4s0 OUT= MAC=00:25:90:ac:03:fa:84:a1:d1:2a:88:bc:08:00 SRC=182.70.254.116 DST=192.168.1.10 LEN=60 TOS=00 PREC=0x00 TTL=54 ID=51641 DF PROTO=TCP SPT=56581 DPT=25 SEQ=1382027432 ACK=0 WINDOW=29200 SYN URGP=0 MARK=0
Sep 24 19:23:14 kooz2 GeoIP BAN: ALL IN=enp4s0 OUT= MAC=00:25:90:ac:03:fa:84:a1:d1:2a:88:bc:08:00 SRC=190.123.90.180 DST=192.168.1.10 LEN=60 TOS=00 PREC=0x00 TTL=54 ID=43723 DF PROTO=TCP SPT=43959 DPT=25 SEQ=3010411297 ACK=0 WINDOW=14600 SYN URGP=0 MARK=0
Sep 24 19:23:16 kooz2 GeoIP BAN: ALL IN=enp4s0 OUT= MAC=00:25:90:ac:03:fa:84:a1:d1:2a:88:bc:08:00 SRC=200.24.113.30 DST=192.168.1.10 LEN=60 TOS=00 PREC=0x00 TTL=46 ID=55397 DF PROTO=TCP SPT=39766 DPT=25 SEQ=3793650118 ACK=0 WINDOW=5808 SYN URGP=0 MARK=0
Sep 24 19:23:16 kooz2 GeoIP BAN: ALL IN=enp4s0 OUT= MAC=00:25:90:ac:03:fa:84:a1:d1:2a:88:bc:08:00 SRC=190.123.90.180 DST=192.168.1.10 LEN=60 TOS=00 PREC=0x00 TTL=54 ID=43724 DF PROTO=TCP SPT=43959 DPT=25 SEQ=3010411297 ACK=0 WINDOW=14600 SYN URGP=0 MARK=0
Sep 24 19:23:16 kooz2 GeoIP BAN: ALL IN=enp4s0 OUT= MAC=00:25:90:ac:03:fa:84:a1:d1:2a:88:bc:08:00 SRC=210.245.120.108 DST=192.168.1.10 LEN=40 TOS=00 PREC=0x00 TTL=240 ID=27314 PROTO=TCP SPT=57268 DPT=13391 SEQ=2885226570 ACK=0 WINDOW=1024 SYN URGP=0 MARK=0
Sep 24 19:23:17 kooz2 GeoIP BAN: ALL IN=enp4s0 OUT= MAC=00:25:90:ac:03:fa:84:a1:d1:2a:88:bc:08:00 SRC=136.185.2.84 DST=192.168.1.10 LEN=60 TOS=00 PREC=0x00 TTL=54 ID=32398 DF PROTO=TCP SPT=57251 DPT=25 SEQ=3130829189 ACK=0 WINDOW=29200 SYN URGP=0 MARK=0
Sep 24 19:23:19 kooz2 GeoIP BAN: ALL IN=enp4s0 OUT= MAC=00:25:90:ac:03:fa:84:a1:d1:2a:88:bc:08:00 SRC=103.93.37.178 DST=192.168.1.10 LEN=60 TOS=00 PREC=0x00 TTL=40 ID=40659 DF PROTO=TCP SPT=49620 DPT=25 SEQ=2542485406 ACK=0 WINDOW=29200 SYN URGP=0 MARK=0
Sep 24 19:23:20 kooz2 GeoIP BAN: ALL IN=enp4s0 OUT= MAC=00:25:90:ac:03:fa:84:a1:d1:2a:88:bc:08:00 SRC=103.93.37.178 DST=192.168.1.10 LEN=60 TOS=00 PREC=0x00 TTL=40 ID=40660 DF PROTO=TCP SPT=49620 DPT=25 SEQ=2542485406 ACK=0 WINDOW=29200 SYN URGP=0 MARK=0
Sep 24 19:23:20 kooz2 GeoIP BAN: ALL IN=enp4s0 OUT= MAC=00:25:90:ac:03:fa:84:a1:d1:2a:88:bc:08:00 SRC=190.123.90.180 DST=192.168.1.10 LEN=60 TOS=00 PREC=0x00 TTL=54 ID=43725 DF PROTO=TCP SPT=43959 DPT=25 SEQ=3010411297 ACK=0 WINDOW=14600 SYN URGP=0 MARK=0
Sep 24 19:23:22 kooz2 GeoIP BAN: ALL IN=enp4s0 OUT= MAC=00:25:90:ac:03:fa:84:a1:d1:2a:88:bc:08:00 SRC=103.93.37.178 DST=192.168.1.10 LEN=60 TOS=00 PREC=0x00 TTL=40 ID=40661 DF PROTO=TCP SPT=49620 DPT=25 SEQ=2542485406 ACK=0 WINDOW=29200 SYN URGP=0 MARK=0
Sep 24 19:23:22 kooz2 GeoIP BAN: ALL IN=enp4s0 OUT= MAC=00:25:90:ac:03:fa:84:a1:d1:2a:88:bc:08:00 SRC=61.131.137.74 DST=192.168.1.10 LEN=60 TOS=00 PREC=0x00 TTL=45 ID=7525 DF PROTO=TCP SPT=55728 DPT=25 SEQ=3370746230 ACK=0 WINDOW=14600 SYN URGP=0 MARK=0
Sep 24 19:23:26 kooz2 GeoIP BAN: ALL IN=enp4s0 OUT= MAC=00:25:90:ac:03:fa:84:a1:d1:2a:88:bc:08:00 SRC=103.93.37.178 DST=192.168.1.10 LEN=60 TOS=00 PREC=0x00 TTL=40 ID=40662 DF PROTO=TCP SPT=49620 DPT=25 SEQ=2542485406 ACK=0 WINDOW=29200 SYN URGP=0 MARK=0
Sep 24 19:23:28 kooz2 GeoIP BAN: ALL IN=enp4s0 OUT= MAC=00:25:90:ac:03:fa:84:a1:d1:2a:88:bc:08:00 SRC=200.24.113.30 DST=192.168.1.10 LEN=60 TOS=00 PREC=0x00 TTL=46 ID=55398 DF PROTO=TCP SPT=39766 DPT=25 SEQ=3793650118 ACK=0 WINDOW=5808 SYN URGP=0 MARK=0
Sep 24 19:23:28 kooz2 GeoIP BAN: ALL IN=enp4s0 OUT= MAC=00:25:90:ac:03:fa:84:a1:d1:2a:88:bc:08:00 SRC=190.123.90.180 DST=192.168.1.10 LEN=60 TOS=00 PREC=0x00 TTL=54 ID=43726 DF PROTO=TCP SPT=43959 DPT=25 SEQ=3010411297 ACK=0 WINDOW=14600 SYN URGP=0 MARK=0
Sep 24 19:23:30 kooz2 GeoIP BAN: ALL IN=enp4s0 OUT= MAC=00:25:90:ac:03:fa:84:a1:d1:2a:88:bc:08:00 SRC=182.70.254.116 DST=192.168.1.10 LEN=60 TOS=00 PREC=0x00 TTL=54 ID=51642 DF PROTO=TCP SPT=56581 DPT=25 SEQ=1382027432 ACK=0 WINDOW=29200 SYN URGP=0 MARK=0
Sep 24 19:23:34 kooz2 GeoIP BAN: ALL IN=enp4s0 OUT= MAC=00:25:90:ac:03:fa:84:a1:d1:2a:88:bc:08:00 SRC=103.93.37.178 DST=192.168.1.10 LEN=60 TOS=00 PREC=0x00 TTL=40 ID=40663 DF PROTO=TCP SPT=49620 DPT=25 SEQ=2542485406 ACK=0 WINDOW=29200 SYN URGP=0 MARK=0
Sep 24 19:23:42 kooz2 denylog: IN=enp4s0 OUT= MAC=00:25:90:ac:03:fa:84:a1:d1:2a:88:bc:08:00 SRC=139.59.189.217 DST=192.168.1.10 LEN=40 TOS=00 PREC=0x00 TTL=241 ID=54321 PROTO=TCP SPT=52627 DPT=43867 SEQ=2168915603 ACK=0 WINDOW=65535 SYN URGP=0 MARK=0
Sep 24 19:23:44 kooz2 GeoIP BAN: ALL IN=enp4s0 OUT= MAC=00:25:90:ac:03:fa:84:a1:d1:2a:88:bc:08:00 SRC=190.123.90.180 DST=192.168.1.10 LEN=60 TOS=00 PREC=0x00 TTL=54 ID=43727 DF PROTO=TCP SPT=43959 DPT=25 SEQ=3010411297 ACK=0 WINDOW=14600 SYN URGP=0 MARK=0
Sep 24 19:23:49 kooz2 GeoIP BAN: ALL IN=enp4s0 OUT= MAC=00:25:90:ac:03:fa:84:a1:d1:2a:88:bc:08:00 SRC=136.185.2.84 DST=192.168.1.10 LEN=60 TOS=00 PREC=0x00 TTL=54 ID=32399 DF PROTO=TCP SPT=57251 DPT=25 SEQ=3130829189 ACK=0 WINDOW=29200 SYN URGP=0 MARK=0
Sep 24 19:23:50 kooz2 GeoIP BAN: ALL IN=enp4s0 OUT= MAC=00:25:90:ac:03:fa:84:a1:d1:2a:88:bc:08:00 SRC=103.93.37.178 DST=192.168.1.10 LEN=60 TOS=00 PREC=0x00 TTL=40 ID=40664 DF PROTO=TCP SPT=49620 DPT=25 SEQ=2542485406 ACK=0 WINDOW=29200 SYN URGP=0 MARK=0
Sep 24 19:23:52 kooz2 GeoIP BAN: ALL IN=enp4s0 OUT= MAC=00:25:90:ac:03:fa:84:a1:d1:2a:88:bc:08:00 SRC=200.24.113.30 DST=192.168.1.10 LEN=60 TOS=00 PREC=0x00 TTL=46 ID=55399 DF PROTO=TCP SPT=39766 DPT=25 SEQ=3793650118 ACK=0 WINDOW=5808 SYN URGP=0 MARK=0
Sep 24 19:23:55 kooz2 GeoIP BAN: ALL IN=enp4s0 OUT= MAC=00:25:90:ac:03:fa:84:a1:d1:2a:88:bc:08:00 SRC=116.153.1.110 DST=192.168.1.10 LEN=40 TOS=00 PREC=0x00 TTL=236 ID=27577 PROTO=TCP SPT=46538 DPT=3351 SEQ=1487218713 ACK=0 WINDOW=1024 SYN URGP=0 MARK=0

Thanks.