Fail2ban scans log files (e.g. /var/log/apache/error_log) and bans IPs that show the malicious signs -- too many password failures, seeking for exploits, etc. Generally Fail2Ban then used to update firewall rules to reject the IP addresses for a specified amount of time, although any arbitrary other action (e.g. sending an email, or ejecting CD-ROM tray) could also be configured. Out of the box Fail2Ban comes with filters for various services (apache, curier, ssh, etc). For more info refer to the official web site
How to install Fail2ban. Enable Epel repository first:
Enable the remi repository.
Open the file /etc/yum.repos.d/remi.repo and set enable=1 in remi section of the file.
Now install Fail2ban:
Set Fail2ban to start at boot
Copy config file to keep the original backup.
Now we have a working config file /etc/fail2ban/jail.local, configure it according to your needs.
Now you have working Fail2ban server. To display banned hosts, enter:
To unlock IP, enter
Was this answer helpful?
FreePBX is an open source GUI (graphical user interface) that controls and manages Asterisk (PBX)...
First of all make sure you have the ports 20-21 opened in your firewall. If not, you...
For increase maximum size of uploads file you should set only one setting in php.ini. Set...
How to install squid with tor [NOTE: According to vpsget.com AUP/TOS you can use private proxy...
In Centos: 1. Edit old mac HWADDR=XX:XX:XX:XX:XX:XX in the file...