From: Christopher E. <ce...@lc...> - 2022-01-06 15:47:12
|
On 06.01.22 06:18, Kevin Buckley wrote: > though my expeience with the IPTables backend suggests that I should > read the above as saying that > > You need to create the two ipsets in the default zone > > but, is that the case, or does SSHGuard do /some things/everything/ > for you in firewalld-land, as long as you use the default (as in zone > in effect when SHHGuard starts) zone ? For both firewalld and nft backends SSHGuard should take care of setting up the rules. For firewalld it does so in the default zone, so if you're not using that you might need to change that, otherwise things should Just Work(TM). Christopher |