From a88fd271c41573d2cbb58f59194fe7117cbb496a Mon Sep 17 00:00:00 2001 From: Yaroslav Halchenko Date: Wed, 5 Mar 2008 23:28:57 -0500 Subject: [PATCH] 2 new jails: xinetd-fail, apache-overflows added to jails.conf --- debian/jail.conf | 17 +++++++++++++++++ 1 file changed, 17 insertions(+) diff --git a/debian/jail.conf b/debian/jail.conf index bb010d79..ce9c7eb1 100644 --- a/debian/jail.conf +++ b/debian/jail.conf @@ -109,6 +109,15 @@ port = anyport logpath = /var/log/auth.log maxretry = 6 +[xinetd-fail] + +enabled = false +filter = xinetd-fail +port = all +banaction = iptables-multiport-log +logpath = /var/log/daemon.log +maxretry = 2 + [ssh-ddos] @@ -148,6 +157,14 @@ filter = apache-noscript logpath = /var/log/apache*/*error.log maxretry = 6 +[apache-overflows] + +enabled = false +port = http,https +filter = apache-overflows +logpath = /var/log/apache*/*error.log +maxretry = 2 + # # FTP servers #