[Fail2ban-users] Problem mit Blocking

2015-01-23 Thread sebast...@debianfan.de
Hallo, ich nutze fail2ban unter anderem auf einer Mailmaschine in Verbindung mit den Postfix-Logfiles. Ich nutze fail2ban in der Standardeinstellung, d.h. ich habe an den Regelwerken keine eigenen Modifikationen vorgenommen. Dummerweise werden solche Mails: Jan 23 22:09:10 mailserver postfix/

[Fail2ban-users] Problem mit Blocking

2015-01-23 Thread sebast...@debianfan.de
-- New Year. New Location. New Benefits. New Data Center in Ashburn, VA. GigeNET is offering a free month of service with a new server in Ashburn. Choose from 2 high performing configs, both with 100TB of bandwidth. Highe

[Fail2ban-users] Unable to find a corresponding IP address for ::1

2015-02-15 Thread sebast...@debianfan.de
Hello, i have a problem with fail2-ban 0.8.6. (debian wheezy standard). I installed fail2ban and activated the postfix jail. for this entry in /var/log/mail.log: Feb 15 15:56:24 servergeek postfix/smtpd[9113]: connect from mf01.rj-v.net[67.3.5.22] Feb 15 15:56:24 servergeek postfix/smtpd[9113]

Re: [Fail2ban-users] Unable to find a corresponding IP address for ::1

2015-02-16 Thread sebast...@debianfan.de
How do i solve this problem? > Am 15.02.2015 um 21:01 schrieb Lee Clemens : > > >> On 02/15/2015 10:08 AM, sebast...@debianfan.de wrote: >> Hello, >> >> i have a problem with fail2-ban 0.8.6. (debian wheezy standard). >> >> I installed fail2ban an

[Fail2ban-users] joomla & fail2ban

2015-03-08 Thread sebast...@debianfan.de
Hello, does anybody have a ruleset ready to use for protecting joomla/administrator directories ? Thx Sebastian -- Dive into the World of Parallel Programming The Go Parallel Website, sponsored by Intel and developed i

Re: [Fail2ban-users] what does AH01630 mean?

2015-09-26 Thread sebast...@debianfan.de
Do you use Apache 2.4.10 ? Have you done a dist upgrade? The allow,deny - rules have changed in apache 2.4.10 :-( Am 26.09.2015 um 16:36 schrieb Johannes Weberhofer: > Am 26.09.15 um 16:19 schrieb Andreas Meyer: >> Hello! >> >> The subject says it all. I have an entry like this in the >> apache

[Fail2ban-users] fail2ban & postfix

2016-08-24 Thread sebast...@debianfan.de
Guten Abend, ich bin grade dabei auf einer Testmaschine einige Dienste noch abzusichern. fail2ban hat sich bei Angriffen auf die Shell als sehr nützlich erwiesen. Die regex für Postfix (mail.log) werden aber völlig ignoriert. Es geht vor allem um solche Einträge: Aug 24 22:38:10 debian postfix

[Fail2ban-users] fail2ban & postfix

2016-08-26 Thread sebast...@debianfan.de
Hi, fail2ban is very effective to stop attacs on the shell accounts. The regex for postfix (mail.log) seems to be ignored. I want to stop hosts which produces the following entries in my log files: Aug 24 22:38:10 debian postfix/smtpd[2123]: NOQUEUE: reject: RCPT from onlinemta58.ccbcjc.com[

Re: [Fail2ban-users] fail2ban & postfix

2016-09-21 Thread sebast...@debianfan.de
failed: authentication failure reject: RCPT from (.*)\[\]: 554 5.1.1 reject: RCPT from (.*)\[\]: 450 4.7.1 reject: RCPT from (.*)\[\]: 554 5.7.1 ignoreregex = Am 26.08.2016 um 22:33 schrieb sebast...@debianfan.de: > Hi, > > > fail

[Fail2ban-users] Problem with courier-auth - Debian 9

2018-07-31 Thread sebast...@debianfan.de
Hi @all, i want to ban imap-Logins. I am using the standard-Fail2ban Configuration. 2018-07-31 23:31:42,152 fail2ban.action [2926]: ERROR iptables -w -N f2b-courier-auth iptables -w -A f2b-courier-auth -j RETURN iptables -w -I INPUT -p tcp -m multiport --dports smtp,465,submission,

[Fail2ban-users] fail2ban, debian 12 & journalctl

2023-11-13 Thread sebast...@debianfan.de
Good evening fail2ban's standard customizing assumes the existence of log files /var/log/mail.log or /var/log/access.log. With debian 12, these log files are no longer available in the standard customizing - everything runs via journalctl. Do any of you have a tutorial about “fail2ban with