Not sure about that, because nothing can be faster as banning an IP via iptables (or even better: ipsets). Because there, incoming packets will be filtered by the kernel with minimal effort. When you first allow the traffic in and, then handle it by a service on the system, you already have a...