Fail2ban Vuurmuur
From MS Computech
Fail2ban + Vuurmuur
apt-get install fail2ban nano /etc/fail2ban/action.d/vuurmuur.conf
# Fail2Ban configuration file
[Definition]
- Option: actionban
- Notes.: command executed when banning an IP. Take care that the
- command is executed with Fail2Ban user rights.
- Tags: <ip> IP address
- <failures> number of failures
- <time> unix timestamp of the ban time
- Values: CMD
actionban = vuurmuur_script --block <ip> --apply
- Option: actionunban
- Notes.: command executed when unbanning an IP. Take care that the
- command is executed with Fail2Ban user rights.
- Tags: <ip> IP address
- <failures> number of failures
- <time> unix timestamp of the ban time
- Values: CMD
actionunban = vuurmuur_script --unblock <ip> --apply
The parameter –apply makes the rule active and reloads vuurmuurs configuration. Open /etc/fail2ban/jail.conf in your favorite editor and search the option banaction and change it as follows:
nano /etc/fail2ban/jail.conf banaction = vuurmuur