On Tue, 04 Feb 2014, root wrote: > I often add rules to iptables "on the fly" and they are used as long as I > don't reboot my box or as long as fail2ban doesn't restart. > When fail2ban restarts, it doesn't care at all about existing rules and > replace all of them by it own rules.
are you sure that is the case? any changes to jails configuration? fail2ban's actions operate in their own chains and do not touch "all of the existing rules". Of cause if you add some rules to fail2ban's chains, they indeed would be wiped out upon restart -- consider that a feature. -- Yaroslav O. Halchenko, Ph.D. http://neuro.debian.net http://www.pymvpa.org http://www.fail2ban.org Senior Research Associate, Psychological and Brain Sciences Dept. Dartmouth College, 419 Moore Hall, Hinman Box 6207, Hanover, NH 03755 Phone: +1 (603) 646-9834 Fax: +1 (603) 646-1419 WWW: http://www.linkedin.com/in/yarik -- To UNSUBSCRIBE, email to [email protected] with a subject of "unsubscribe". Trouble? Contact [email protected]

