From: Yaroslav H. <li...@on...> - 2007-01-17 16:20:18
|
once again -- 1. those are just warnings and not errors - ie they are safe did you enable sections you are interested in? (Debian version of 0.6 has command line parameter -e which you can tune in /etc/default/fail2ban to enable additional sections, or you can simply edit /etc/fail2ban.conf to enable. By default only ssh is enabled) On Wed, 17 Jan 2007, Takeru Nakamine wrote: > To Nils > I did not change any configuration, but I got the message. > To Yaroslav > I did zcat command and start fail2ban. > Still, I got same message at the first time. > 2007-01-17 19:52:37,792 WARNING: No 'fwstart' defined in 'Apache'. > Using default one: '''' > 2007-01-17 19:52:37,803 WARNING: No 'fwend' defined in 'Apache'. Using > default one: '''' > 2007-01-17 19:52:37,823 WARNING: No 'fwcheck' defined in 'Apache'. > Using default one: '''' > 2007-01-17 19:52:37,862 WARNING: No 'fwstart' defined in 'PROFTPD'. > Using default one: ''' > ' > 2007-01-17 19:52:37,872 WARNING: No 'fwend' defined in 'PROFTPD'. > Using default one: '''' > 2007-01-17 19:52:37,892 WARNING: No 'fwcheck' defined in 'PROFTPD'. > Using default one: ''' > ' > 2007-01-17 19:52:37,932 WARNING: No 'fwstart' defined in 'SSH'. Using > default one: '''' > 2007-01-17 19:52:37,942 WARNING: No 'fwend' defined in 'SSH'. Using > default one: '''' > 2007-01-17 19:52:37,962 WARNING: No 'fwcheck' defined in 'SSH'. Using > default one: '''' > 2007-01-17 19:52:38,002 WARNING: No 'fwstart' defined in 'VSFTPD'. > Using default one: '''' > 2007-01-17 19:52:38,013 WARNING: No 'fwend' defined in 'VSFTPD'. Using > default one: '''' > 2007-01-17 19:52:38,033 WARNING: No 'fwcheck' defined in 'VSFTPD'. > Using default one: ' > Thanks, > Nakamine > 2007/1/17, Yaroslav Halchenko <[1] li...@on...>: > You can use hostsdeny way to limit access via tcpwrappers > just > zcat /usr/share/doc/fail2ban/examples/fail2ban.conf.hostsdeny.gz >| > /etc/fail2ban.conf > and make desired configuration changes > this method should work but was less tested though... > On Tue, 16 Jan 2007, Takeru Nakamine wrote: > > To Yaroslav > > I installed by "dpkg -i ***.deb" and succeeded to run it. > > One last problem is that I need to install iptables to use it. > > I thought fail2ban does not need to install iptables, it seems > > like I need to install it. > > I will try to upgrade my kernel later. > > Thanks anyway. > > Nakamine -- .-. =------------------------------ /v\ ----------------------------= Keep in touch // \\ (yoh@|www.)onerussian.com Yaroslav Halchenko /( )\ ICQ#: 60653192 Linux User ^^-^^ [175555] |