mirror of https://github.com/fail2ban/fail2ban
Steven Hiscocks
11 years ago
16 changed files with 69 additions and 223 deletions
@ -1,22 +0,0 @@
|
||||
# Fail2Ban configuration file |
||||
# |
||||
# Author: Daniel Black |
||||
# |
||||
# This is a included configuration file and includes the defination for the blocktype |
||||
# used in all iptables based actions by default. |
||||
# |
||||
# The user can override the default in iptables-blocktype.local |
||||
|
||||
[INCLUDES] |
||||
|
||||
after = iptables-blocktype.local |
||||
|
||||
[Init] |
||||
|
||||
# Option: blocktype |
||||
# Note: This is what the action does with rules. This can be any jump target |
||||
# as per the iptables man page (section 8). Common values are DROP |
||||
# REJECT, REJECT --reject-with icmp-port-unreachable |
||||
# Values: STRING |
||||
blocktype = REJECT --reject-with icmp-port-unreachable |
||||
|
@ -0,0 +1,45 @@
|
||||
# Fail2Ban configuration file |
||||
# |
||||
# Author: Daniel Black |
||||
# |
||||
# This is a included configuration file and includes the definitions for the iptables |
||||
# used in all iptables based actions by default. |
||||
# |
||||
# The user can override the defaults in iptables-common.local |
||||
|
||||
[INCLUDES] |
||||
|
||||
after = iptables-blocktype.local |
||||
iptables-common.local |
||||
# iptables-blocktype.local is obsolete |
||||
|
||||
[Init] |
||||
|
||||
# Option: chain |
||||
# Notes specifies the iptables chain to which the Fail2Ban rules should be |
||||
# added |
||||
# Values: STRING Default: INPUT |
||||
chain = INPUT |
||||
|
||||
# Default name of the chain |
||||
# |
||||
name = default |
||||
|
||||
# Option: port |
||||
# Notes.: specifies port to monitor |
||||
# Values: [ NUM | STRING ] Default: |
||||
# |
||||
port = ssh |
||||
|
||||
# Option: protocol |
||||
# Notes.: internally used by config reader for interpolations. |
||||
# Values: [ tcp | udp | icmp | all ] Default: tcp |
||||
# |
||||
protocol = tcp |
||||
|
||||
# Option: blocktype |
||||
# Note: This is what the action does with rules. This can be any jump target |
||||
# as per the iptables man page (section 8). Common values are DROP |
||||
# REJECT, REJECT --reject-with icmp-port-unreachable |
||||
# Values: STRING |
||||
blocktype = REJECT --reject-with icmp-port-unreachable |
Loading…
Reference in new issue