IP blocking is *okay* for basic stuff, but yeah, it’s not gonna stop a real DDoS. Like you said, attackers just switch IPs or use botnets.
For spam, it’s a bit more useful if you combine it with something like Fail2Ban. But honestly, tools like Cloudflare’s WAF or Sucuri do way better by analyzing traffic patterns, not just IPs.
Also, rate limiting + ip blocking is a solid combo. But alone? Nah, it’s like bringing a knife to a gunfight.
For spam, it’s a bit more useful if you combine it with something like Fail2Ban. But honestly, tools like Cloudflare’s WAF or Sucuri do way better by analyzing traffic patterns, not just IPs.
Also, rate limiting + ip blocking is a solid combo. But alone? Nah, it’s like bringing a knife to a gunfight.
