From: Richard C. <rch...@aa...> - 2014-05-27 09:05:42
|
Hi Jamie It is great to see fail2ban support. I have recently started using fail2ban - and looked for a webmin module without luck. Something I don't understand though.... Before the webmin support I defined 3 "jails" in my "/etc/fail2ban/jail.local" file.... thus" ------------------- [sasl-route] # Here we use blackhole routes for not requiring any additional kernel support # to store large volumes of banned IPs enabled = true maxretry = 5 filter = sasl action = route sendmail-whois[name=SASLR, dest=ri...@aa...] logpath = /var/log/maillog # Here we use TCP-Wrappers instead of Netfilter/Iptables. "ignoreregex" is # used to avoid banning the user "myuser". [ssh-tcpwrapper] enabled = false filter = sshd action = hostsdeny sendmail-whois[name=SSHW, dest=rch...@aa...] logpath = /var/log/secure # Here we use blackhole routes for not requiring any additional kernel support # to store large volumes of banned IPs [ssh-route] enabled = true filter = sshd action = route sendmail-whois[name=SSHR, dest=rch...@aa...] logpath = /var/log/secure maxretry = 5 ------------ 2 of these appear in the webmin jails list - but the "sasl-route" jail does not seem to appear either enabled or disabled. Any ideas why?: Richard. |