Difference between revisions of "Fail2ban Vuurmuur"

From MS Computech
Jump to: navigation, search
(New page: Fail2ban + Vuurmuur <pre>apt-get install fail2ban nano /etc/fail2ban/action.d/vuurmuur.conf </pre><pre># Fail2Ban configuration file # # [Definition] # Option: actionban # Notes.: com...)
(No difference)

Revision as of 01:21, 27 May 2009

Fail2ban + Vuurmuur

apt-get install fail2ban
nano /etc/fail2ban/action.d/vuurmuur.conf
# Fail2Ban configuration file

[Definition]

  1. Option: actionban
  2. Notes.: command executed when banning an IP. Take care that the
  3. command is executed with Fail2Ban user rights.
  4. Tags: <ip> IP address
  5. <failures> number of failures
  6. <time> unix timestamp of the ban time
  7. Values: CMD

actionban = vuurmuur_script --block <ip> --apply

  1. Option: actionunban
  2. Notes.: command executed when unbanning an IP. Take care that the
  3. command is executed with Fail2Ban user rights.
  4. Tags: <ip> IP address
  5. <failures> number of failures
  6. <time> unix timestamp of the ban time
  7. Values: CMD

actionunban = vuurmuur_script --unblock <ip> --apply

The parameter –apply makes the rule active and reloads vuurmuurs configuration. Open /etc/fail2ban/jail.conf in your favorite editor and search the option banaction and change it as follows:

nano /etc/fail2ban/jail.conf
banaction = vuurmuur

source