Fail2ban Vuurmuur

From MS Computech
Revision as of 01:22, 27 May 2009 by Snifer (talk | contribs)
Jump to: navigation, search

Fail2ban + Vuurmuur

apt-get install fail2ban
nano /etc/fail2ban/action.d/vuurmuur.conf
  1. Fail2Ban configuration file
    #
    #

[Definition]

  1. Option: actionban
    # Notes.: command executed when banning an IP. Take care that the
    # command is executed with Fail2Ban user rights.
    # Tags: <ip> IP address
    # <failures> number of failures
    # <time> unix timestamp of the ban time
    # Values: CMD
    #
    actionban = vuurmuur_script --block <ip> --apply
  1. Option: actionunban
    # Notes.: command executed when unbanning an IP. Take care that the
    # command is executed with Fail2Ban user rights.
    # Tags: <ip> IP address
    # <failures> number of failures
    # <time> unix timestamp of the ban time
    # Values: CMD
    #
    actionunban = vuurmuur_script --unblock <ip> --apply


The parameter –apply makes the rule active and reloads vuurmuurs configuration. Open /etc/fail2ban/jail.conf in your favorite editor and search the option banaction and change it as follows:

nano /etc/fail2ban/jail.conf
banaction = vuurmuur

source