Well, when I had a server up, it was mostly attacks against my SSH, HTTP, and SMTP ports with the occasional port scan blurps on the DNAS (mostly saw those on the v1 DNAS, not the v2 DNAS.) The first time I setup Fail2Ban on my server I would get at least 15 e-mails a day about Chinese and Taiwanese attacks against various ports. When I put in the country blocking for those two countries that fell to 1-2 a week.

I never got any legitimate traffic from those countries anyways so it didn't bother me at all to use those "excessive" measures. It's something to consider. Some random script kiddie from China can't bot even the most un-updated and unprotected server if they're just blocked completely.
