It would be nice if i could use fail2ban for OpenVZ hardware nodes.
It's actually no problem to monitor more than one logfile. logpath = /vz/private/*/var/log/auth.log) for example does a good job, as long as all virtual machines have the same timezone.
The better solution for that would be to set up a jail.conf for every virtual machine with the information about the time offset to the master/hardware node.
Log in to post a comment.