- [Show page]
- [Old revisions]
- [[unknown link type]]
- []
Differences
This shows you the differences between two versions of the page.
Both sides previous revision Previous revision Next revision | Previous revision Last revision Both sides next revision | ||
linux:fail2ban [2015/11/09 16:44] vondra [Installation from git] |
linux:fail2ban [2015/12/22 11:18] vondra |
||
---|---|---|---|
Line 11: | Line 11: | ||
cp config/* /etc/fail2ban/</code> | cp config/* /etc/fail2ban/</code> | ||
- print iptables version<code bash>iptables --version</code> | - print iptables version<code bash>iptables --version</code> | ||
- | - if iptables version >1.4.20 edit the /etc/fail2ban/action.d/iptables-common.conf and set locking opt to empty string: <code>lockingopt =</code> | + | - if iptables version <1.4.20 edit the /etc/fail2ban/action.d/iptables-common.conf and set locking opt to empty string: <code>lockingopt =</code> |
- create startup script and start the service<code bash> | - create startup script and start the service<code bash> | ||
cp files/debian-initd /etc/init.d/fail2ban | cp files/debian-initd /etc/init.d/fail2ban | ||
Line 17: | Line 17: | ||
service fail2ban start</code> | service fail2ban start</code> | ||
* NOTE: installation script registers the app to python package system so uninstall (in case you want to switch back to distribution package) is as easy as <code>pip uninstall fail2ban</code> | * NOTE: installation script registers the app to python package system so uninstall (in case you want to switch back to distribution package) is as easy as <code>pip uninstall fail2ban</code> | ||
+ | |||
+ | ====== Asterisk ====== | ||
+ | change default context in /etc/fail2ban/filter.d/asterisk in following line <code> | ||
+ | ^(%(__prefix_line)s|\[\]\s*)%(log_prefix)s Call from '[^']*' \(<HOST>:\d+\) to extension '\d+' rejected because extension not found in context 'default'\.$</code> | ||
+ | |||
+ |
linux/fail2ban.txt · Last modified: 2020/12/09 23:29 by admin