blog/content/docs/server/services/fail2ban.md

925 B

title weight
Fail2ban 1

Fail2ban

Installation

Installer le paquet fail2ban.

Configuration

[DEFAULT]
bantime = 1h
bantime.increment = true

ignoreip = 127.0.0.1/8 ::1

banaction = ufw[comment="fail2ban"]
banaction_allports = ufw[type=allports,comment="fail2ban"]

destemail = ...
sender = ...

action = %(action_mwl)s

Services

[sshd]
enabled = true
mode = aggressive

[postfix]
enabled = true
mode = aggressive

[dovecot]
enabled = true
mode = aggressive

[bitwarden]
enabled = true
logpath = /var/log/vaultwarden.log

[nginx-http-auth]
enabled = true

[nginx-botsearch]
enabled = true

[sieve]
enabled = true

[nextcloud]
enabled = true
logpath = /var/log/nextcloud/nextcloud.log

Démarrage

Activer le service fail2ban.service.