enabled = false
[DEFAULT] ignoreip = 127.0.0.1 12.34.56.78 # trusted IP addresses bantime = 86400 # in seconds. '-1' means 'forever' destemail = you@provider.com banaction = iptables-multiport action = %(action_mwl)s # JAILS [ssh] enabled = true maxretry = 3 # number of matches to trigger a ban port = customPortNumber # if different from default (22) findtime = 60 # The match counter is reset if no match is found within "findtime" seconds. [pam-generic] enabled = true banaction = iptables-allports [ssh-ddos] enabled = true [apache] enabled = true [apache-noscript] enabled = true port = http,https banaction = iptables-multiport action = %(action_mwl)s [apache-overflows] enabled = true [apache-badbots] enabled = true port = http,https filter = apache-badbots banaction = iptables-allports action = %(action_mwl)s logpath = /var/log/apache*/*access.log maxretry = 1 [apache-nohome] enabled = true port = http,https filter = apache-nohome banaction = iptables-multiport action = %(action_mwl)s logpath = /var/log/apache*/*access.log maxretry = 1 [php-url-fopen] enabled = true port = http,https filter = php-url-fopen logpath = /var/log/apache*/*access.log maxretry = 1 [exim] enabled = true filter = exim port = smtp,ssmtp logpath = /var/log/exim*/rejectlog maxretry = 1
Status for the jail: ssh |- filter | |- File list: /var/log/auth.log | |- Currently failed: 0 | `- Total failed: 6 `- action |- Currently banned: 0 | `- IP list: `- Total banned: 1