We have a huge issue with Imunify blocking legitimate users.
For example,
There is an office with 10 people.
1 user is entering a password incorrectly, triggering:
Dovecot Invalid User Login Attempt.
Exim Auth failed
Dovecot brute force attack (multiple auth failures).
This 1 user then gets the entire office IP blocked and 9 other people can't get their mail.
cPHulk will actually block only the 1 offending mail user.
How can we solve this?