Commit Graph

555 Commits (2d688a5a03ce9f76827a2694e56fbae7680412b0)

Author SHA1 Message Date
Yaroslav Halchenko a8bd9c20a0 Merge branch 'master' of git://github.com/fail2ban/fail2ban
12 years ago
Yaroslav Halchenko d5ae28facf Merge pull request #104 from gebi/t/route
12 years ago
Steven Hiscocks 294f073741 Typo in default pidfile in fail2ban.conf
12 years ago
Steven Hiscocks ce3ab34dd8 Added ability to specify PID file
12 years ago
Daniel Black 47b1ee39d8 add blocking type
12 years ago
Yaroslav Halchenko 8cf006827e BF: remove path from grep call in sendmail-whois-lines.conf Closes: gh-118
12 years ago
ArndRa 6cd358ee95 Update config/filter.d/sogo-auth.conf
12 years ago
ArndRa 35bf84abad Create sogo-auth.conf
12 years ago
ArndRa 52f952e645 Update config/jail.conf
12 years ago
Yaroslav Halchenko 5f2d3832f7 NF: roundcube-auth filter (to close Debian #699442, needing debian/jail.conf section)
12 years ago
Orion Poplawski bb7628591c Update config/filter.d/sshd.conf
12 years ago
Yaroslav Halchenko 9a39292813 ENH: Added login authenticator failed regexp for exim filter
12 years ago
Yaroslav Halchenko b3d8ba146b DOC: Mention that logrotate configuration needs to be adjusted if logtarget is changed (Closes: #697333)
12 years ago
Michael Gebetsroither 03433f79cd add example jail.conf for blocking through blackhole routes for ssh
12 years ago
Michael Gebetsroither f9b78ba927 add support for blocking through blackhole routes
12 years ago
Daniel Black da0ba8ab4c ENH: add example jail for ipset
12 years ago
Daniel Black 9221886df6 more documentation and optimisations/fixes based on testing
12 years ago
Daniel Black abd5984234 base ipset support
12 years ago
pigsyn f336d9f876 Update config/filter.d/webmin-auth.conf
12 years ago
pigsyn dc67b24270 Update config/filter.d/webmin-auth.conf
12 years ago
Yaroslav Halchenko 3969e3f77b ENH: dovecot.conf - require space(s) before rip/rhost log entry
12 years ago
hamilton5 266cdc29a6 Update config/filter.d/dovecot.conf
12 years ago
hamilton5 e040c6d8a3 Update config/filter.d/dovecot.conf
12 years ago
hamilton5 7ede1e8518 Update config/filter.d/dovecot.conf
12 years ago
Yaroslav Halchenko fc27e00290 ENH: tune up sshd-ddos to use common.conf and allow training spaces
12 years ago
Yaroslav Halchenko 6ecf4fd80a Merge pull request #64 from sourcejedi/remove_sshd_rdns
12 years ago
Mark McKinstry 95de9c1a97 add support for the APF firewall
12 years ago
Yaroslav Halchenko 282724a7f9 ENH: join both failregex for lighttpd-auth into a single one
12 years ago
François Boulogne 958a1b0a40 Lighttpd: support auth.backend = "htdigest"
12 years ago
Yaroslav Halchenko 2a225aa6ee Added a warning within "complaint.conf" action about care with enabling it
12 years ago
Yaroslav Halchenko 2082fee7b1 ENH: match possibly present "pam_unix(sshd:auth):" portion for sshd (Closes: #648020)
13 years ago
Yaroslav Halchenko 6ad55f64b3 ENH: add wu-ftpd failregex for use against syslog (Closes: #514239)
13 years ago
Yaroslav Halchenko 80b191c7fd BF: anchor chain name in actioncheck's for iptables actions (Closes: #672228)
13 years ago
Yaroslav Halchenko a3b242d6dd BF: inline comments must use ; not # -- recidive jail
13 years ago
Alan Jenkins 8c38907016 Misconfigured DNS should not ban *successful* ssh logins
13 years ago
Yaroslav Halchenko b4099dae57 DOC: Adjusted header for config/*.conf to mention .local and way to comment
13 years ago
Petr Voralek 4007751191 ENH: catch failed ssh logins due to being listed in DenyUsers. Close gh-47 (Closes: #669063)
13 years ago
Yaroslav Halchenko 7b77beee0e DOC: comment in jail.conf for the need of multiple jails for asterisk
13 years ago
Yaroslav Halchenko 71a3fb17e2 Merge remote-tracking branch 'gh-magicrhesus/master'
13 years ago
Xavier Devlamynck 8c00ce0a65 Add the INCLUDE section to use __pid_re feature
13 years ago
Xavier Devlamynck 180c17bede Disable asterisk jail by default
13 years ago
Xavier Devlamynck df0e0fdc07 Change jail for asterisk, add support for SIP and SIP-TLS on TCP and UDP ports
13 years ago
Xavier Devlamynck c679a1a588 Change NOTICE by NOTICE%(__pid_re)s
13 years ago
Yaroslav Halchenko 42dd05210a Added a warning for the recidive jail
13 years ago
Xavier Devlamynck d7ca754980 Merge branch 'master' of github.com:magicrhesus/fail2ban
13 years ago
Xavier Devlamynck c7613ce311 Remove custom bantime
13 years ago
Xavier D d98cdb25d6 Add $ at the end of the failregex
13 years ago
Yaroslav Halchenko 25f1e8d98c BF: allow trailing whitespace in few missing it regexes for sshd.conf
13 years ago
Yaroslav Halchenko 1807be5a8c ENH: moved jail definition for recidive into jail.conf + swapped/commented durations + non-groupping ?:
13 years ago
Tom Hendrikx f94a121663 Fix for https://github.com/fail2ban/fail2ban/issues/19
13 years ago
Lee Clemens d73a71f5cf ENH: Add usedns parameter for the jails
13 years ago
Xavier Devlamynck 7d465f98c1 Add asterisk support
13 years ago
Yaroslav Halchenko 9559fcd3a0 Merge pull request #25 from leeclemens/enh/pyinotify
13 years ago
Yaroslav Halchenko 35201f6690 Merge remote-tracking branch 'gh-keszybz/master'
13 years ago
Zbigniew Jędrzejewski-Szmek 321670487e NF: xt_recent-echo action
13 years ago
Lee Clemens 8a2e26403a Merge remote-tracking branch 'upstream/master'
13 years ago
Leonardo Chiquitto 4502adfe69 Fix comments to reflect code
13 years ago
Lee Clemens e442503133 Added pyinotify backend
13 years ago
Yaroslav Halchenko 4c76fb3b54 ENH: allow trailing white-spaces in lighttpd-auth.conf
13 years ago
François Boulogne 683d4f269d modifications suggested by a referee (log ex+regexp)
13 years ago
François Boulogne a7cb20edac add lighttpd-auth jail
13 years ago
François Boulogne b6d9f795dc add filter for lighttpd mod_auth failure
13 years ago
Tom Hendrikx 9fa54cf233 Add Date: header for sendmail*.conf actions
13 years ago
Yaroslav Halchenko a9be451079 ENH: removed expansion for few Date and Revision SVN keywords
13 years ago
Yaroslav Halchenko dad91f7969 ENH: sshd.conf -- allow user names to have spaces and trailing spaces in the line
13 years ago
Yaroslav Halchenko ed0bf3ad96 Removed duplicate entry for DataCha0s/2\.0 in badbots (closes: #519557)
13 years ago
Adam Spiers 3152afbdc2 Recognise time-stamped kernel messages
13 years ago
Yaroslav Halchenko 3eb5e3b876 BF: Allow for trailing spaces in sasl logs
14 years ago
Yaroslav Halchenko 02be7d03b2 BF: use standard/reserved example.com instead of mail.com
14 years ago
Yaroslav Halchenko 6d25310e28 ENH: Adding author for dovecot filter and prunning unneeded space in the regexp
14 years ago
Yaroslav Halchenko eab9af9caa BF: proftpd filter -- if login failed -- count regardless of the reason for failure
14 years ago
Yaroslav Halchenko d4b89d8404 BF: Allow for trailing spaces in proftpd logs
14 years ago
Yaroslav Halchenko 1cb48bbc96 BF: escaping () in pure-ftpd filter. Thanks Teodor
14 years ago
Yaroslav Halchenko 02e7dfb099 BF: allow space in the trailing of failregex for sasl.conf: see http://bugs.debian.org/573314
14 years ago
Yaroslav Halchenko 3831fbf98b ENH: add <chain> to action.d/iptables*. Thanks Matthijs Kooijman: see http://bugs.debian.org/515599
14 years ago
Yaroslav Halchenko 6558c03f8e NF: Adding found on a drive filter.d/dovecot.conf
14 years ago
Yaroslav Halchenko 10faba5163 ENH: make filter.d/apache-overflows.conf catch more: see http://bugs.debian.org/574182
14 years ago
Yaroslav Halchenko 0073ba3838 ENH: dropbear filter: see http://bugs.debian.org/546913
14 years ago
Yaroslav Halchenko 638bb66523 BF: Use /var/run/fail2ban instead of /tmp for temp files in actions: see http://bugs.debian.org/544232
14 years ago
Yaroslav Halchenko 7b54c7b33b spellcheck jail.conf. Thanks Christoph Anton Mitterer
14 years ago
Yaroslav Halchenko 521631cfcc default ignoreip to ignore entire loopback zone (/8): see http://bugs.debian.org/598200
14 years ago
Yaroslav Halchenko dabe3aeae1 disabling entirely named-refused-udp jail with a big fat warning
15 years ago
Arturo 'Buanzo' Busleiman b91595dd11 Disabled jail lighttpd-fastcgi by default.
15 years ago
Arturo 'Buanzo' Busleiman dde7afe1f3 added two new filter files (PHP url_fopen, lighttpd fastcgi alerts), updated MANIFEST and jail.conf accordingly
15 years ago
Cyril Jaquier 55fd21ec4b - Made the named-refused regex a bit less restrictive in order to match logs with "view". Thanks to Stephen Gildea.
16 years ago
Cyril Jaquier abd061bad8 - Changed <HOST> template to be more restrictive. Debian bug #514163.
16 years ago
Cyril Jaquier 7fd0300a73 - Added cyrus-imap and sieve filters. Thanks to Jan Wagner. Debian bug #513953.
16 years ago
Cyril Jaquier 376f348823 - Pull a commit from Yaroslav git repo. BF: addressing added bang to ssh log (closes: #512193).
16 years ago
Cyril Jaquier e86e7d002e - Added missing semi-colon in the bind9 example. Thanks to Yaroslav Halchenko.
16 years ago
Cyril Jaquier e16c18d091 - Added NetBSD ipfilter (ipf command) action. Thanks to Ed Ravin. Tracker #2484115.
16 years ago
Cyril Jaquier e46e8ed32e - Improved SASL filter. Thanks to Loic Pefferkorn. Tracker #2310410.
16 years ago
Cyril Jaquier 6cd56802bb - Added actions to report abuse to ISP, DShield and myNetWatchman. Thanks to Russell Odom.
16 years ago
Cyril Jaquier 622218271d - Added svn:keywords property.
16 years ago
Cyril Jaquier bb8e610795 - Added apache-nohome.conf. Thanks to Yaroslav Halchenko.
16 years ago
Cyril Jaquier 391a38a7a8 - Added new regex. Thanks to Tobias Offermann.
16 years ago
Cyril Jaquier 3615c8ec81 - Improved pattern. Thanks to Yaroslav Halchenko.
17 years ago
Cyril Jaquier 155c4652a4 - Merged patches from Debian package. Thanks to Yaroslav Halchenko.
17 years ago
Cyril Jaquier 9ed39a4387 - Send file if the number of lines is greater or equal and not only equal to the limit.
17 years ago
Cyril Jaquier 11c8c71014 - Added missing ignoreregex to filters. Thanks to Klaus Lehmann.
17 years ago
Cyril Jaquier 7dde8d6694 - Added svn:keywords.
17 years ago
Cyril Jaquier a32f04b0cb - Added gssftpd filter. Thanks to Kevin Zembower.
17 years ago
Cyril Jaquier d9f9a31802 - Added "pam-generic" filter and more configuration fixes. Thanks to Yaroslav Halchenko.
17 years ago
Cyril Jaquier 55d6baa66d - Added svn:keywords
17 years ago
Cyril Jaquier e7eaf5c488 - Fixed Debian bug #461426
17 years ago
Cyril Jaquier f77057d3dd - Fixed Debian bug #462060
17 years ago
Cyril Jaquier 06f8a1a8ca - Fixed Debian bug #468477
17 years ago
Cyril Jaquier ead3e50c97 - Fixed Debian bug #456567
17 years ago
Cyril Jaquier 6db1212152 - Added revision.
17 years ago
Cyril Jaquier 17e31b167e - Replaced "reject" with "drop" in shorwall action. Fix #1854875
17 years ago
Cyril Jaquier 0afa6fb2be - Replaced "echo" with "printf" in actions. Fix #1839673
17 years ago
Cyril Jaquier f0399ca5a4 - Absorbed some Debian patches. Thanks to Yaroslav Halchenko.
17 years ago
Cyril Jaquier 174ce7027a - Fixed fail2ban-regex. It support "includes" in configuration files.
17 years ago
Cyril Jaquier e66d9eee41 - Moved socket to /var/run/fail2ban.
17 years ago
Cyril Jaquier c40534123c - Fixed ipfw action script. Thanks to Nick Munger
17 years ago
Cyril Jaquier 66063d2731 - Added "full line failregex" patch. Thanks to Yaroslav Halchenko. It will be possible to create stronger failregex against log injection
17 years ago
Cyril Jaquier d885fc786e - Fixed wrong path for apache-auth in jail.conf. Thanks to Vincent Deffontaines
18 years ago
Cyril Jaquier 938297138b - Fixed named filter. Thanks to Yaroslav Halchenko
18 years ago
Cyril Jaquier 732c66215f - Improved regular expressions
18 years ago
Cyril Jaquier 5fd5a8112a - Added named (bind9) example. Thanks to Yaroslav Halchenko
18 years ago
Cyril Jaquier 49b2e40682 - Fixed vsftpd filter. Thanks to Yaroslav Halchenko
18 years ago
Cyril Jaquier 3ef8fbe2e3 - Modified failregex again. Thanks to Yaroslav Halchenko
18 years ago
Cyril Jaquier a3ace8040b - Added filter file for named (bind9). Thanks to Yaroslav Halchenko
18 years ago
Cyril Jaquier 26c54c4538 - Added new action iptables-allports. Thanks to Yaroslav Halchenko
18 years ago
Cyril Jaquier 711f936ed0 - Corrected subject
18 years ago
Cyril Jaquier e841209f1b - Added new regex for proftpd. Thanks to Vaclav Misek
18 years ago
Cyril Jaquier 9ac663a121 - Added webmin authentication filter. Thanks to Guillaume Delvit
18 years ago
Cyril Jaquier f714c96d0e - Updated regular expressions
18 years ago
Cyril Jaquier 08c2c55742 - Added sendmail actions. The action started with "mail" are now deprecated. Thanks to Raphaël Marichez
18 years ago
Cyril Jaquier e2334db7a6 - Improved regular expressions. Thanks to Yaroslav Halchenko
18 years ago
Cyril Jaquier 1e2ddec485 - Fixed vulnerability in sshd.conf. Thanks to Daniel B. Cid
18 years ago
Cyril Jaquier bfab0409a2 - Replaced -d with -f. We are looking for a file, not a directory
18 years ago
Cyril Jaquier ac54c8b4f1 - Modified filters config. Thanks to Michael C. Haller
18 years ago
Cyril Jaquier b40b9d88d2 - Added a new line before "Regards,"
18 years ago
Cyril Jaquier ee234d424c - Added pure-ftpd filter. Thanks to Yaroslav Halchenko
18 years ago
Cyril Jaquier 64226d09c0 - Improved failregex a bit
18 years ago
Cyril Jaquier 0b9c41c015 - Removed actionstart and actionstop which are now obsolete
18 years ago
Cyril Jaquier f02a915de1 - Added a new example for vsftpd. Thanks to Christian Rauch
18 years ago
Cyril Jaquier 54e4d012d1 - Fixed bug #1664386. Thanks to Harry Rarig
18 years ago
Cyril Jaquier b4caed8c00 - Added new filter for spam bots
18 years ago
Cyril Jaquier d5ededc340 - Updated failregex
18 years ago
Cyril Jaquier 743ec88eef - Updated failregex
18 years ago
Cyril Jaquier 45277fff4a - Removed section with mail-report script which does not exist anymore
18 years ago
Cyril Jaquier 04cd3f5bd5 - Added new filters/actions. Thanks to Yaroslav Halchenko
18 years ago
Cyril Jaquier 6cf814245e - Fixed missing regular expression
18 years ago
Cyril Jaquier 44d75eb54f - Added missing svn:keywords
18 years ago
Cyril Jaquier 7719c00d37 - Allow comma in action options. The value of the option must be escaped with " or '. Thanks to Yaroslav Halchenko
18 years ago
Cyril Jaquier 3a344557ec - Exim4 filter. Thanks to mEDI
18 years ago
Cyril Jaquier 1ac00d062a - Regular expression should be more correct now
18 years ago
Cyril Jaquier 2e197487a2 - Fixed removal of host in hosts.deny. Thanks to René Berber
18 years ago
Cyril Jaquier 840b9fff0f - Fixed some comments
18 years ago
Cyril Jaquier 0c40adda4b - Fixed some comments
18 years ago
Cyril Jaquier 6f7df2cc3c - Use numeric output for iptables in "actioncheck"
18 years ago
Cyril Jaquier 8ca367d609 - Use /dev/log for SYSLOG output. Thanks to Joerg Sommrey
18 years ago
Yaroslav Halchenko 90fb1d442e slight english adjustment with no good english: Destinataire->Destination/Addressee
18 years ago
Cyril Jaquier f5d4cb6be2 - Added alias "<HOST>" for failregex
18 years ago
Cyril Jaquier 911b2b15fc - Merged "maxtime" with "findtime"
18 years ago
Cyril Jaquier 0fd9865172 - Defined default values in .conf. Should fix Debian bug #398758
18 years ago
Cyril Jaquier 90359ba523 - Added option "ignoreregex" in filter scripts and jail.conf. Feature Request #1283304
18 years ago
Cyril Jaquier d6e49f8480 - Fixed rebanned bug
18 years ago
Cyril Jaquier f74657f4b6 - Added "courierlogin" filter. Thanks to Christoph Haas
18 years ago
Cyril Jaquier 51fd8fac27 - Added ipfw action script and example. Thanks to Nick Munger
18 years ago
Cyril Jaquier 15a4634c38 - Added "shorewall" action
18 years ago
Cyril Jaquier 9a96428bd2 - Added "socket" option
18 years ago
Cyril Jaquier ebae6d70aa - Added "apache-noscript" filter. Thanks to Pander
18 years ago
Yaroslav Halchenko e39ef65e3a added sections for sasl and proftpd authentications
18 years ago
Cyril Jaquier 2bcc036cf2 - Improved configuration files
18 years ago
Cyril Jaquier 7b7d246a19 - Added DNS support for "ignoreip"
18 years ago
Cyril Jaquier 0d68fc9ef1 - Added "ignoreip" and a few other options in [DEFAULT]
18 years ago
Cyril Jaquier 5c020b99da - mail-report.conf is not a good idea as the jail is already deleted when creating the report
18 years ago
Cyril Jaquier 7864bdc953 - Improved jail.conf
18 years ago
Cyril Jaquier 1c3088b267 - Added new action
18 years ago
Cyril Jaquier b1160ab7ca - Added qmail and postfix filters
18 years ago
Cyril Jaquier 21b6e76cde - Added date detector
18 years ago
Cyril Jaquier f1f12518c8 - Moved "logpath" and "maxtime" to "jail.conf"
18 years ago
Cyril Jaquier 131a0a9cb3 - Added a couriersmtpd filter
19 years ago
Cyril Jaquier d7682360bc - Clean up configuration files
19 years ago
Cyril Jaquier f752dbe065 - Removed from version control
19 years ago
Cyril Jaquier 7ed59912f2 - Added *.local as svn:ignore
19 years ago
Cyril Jaquier 4bc6fe419b - Removed a new line
19 years ago
Cyril Jaquier 857f6d619b - Fixed bug in failregex
19 years ago
Cyril Jaquier f248c460f2 - Improved logging in server
19 years ago
Cyril Jaquier 3d73f45531 - Added 'host' group in failregex
19 years ago
Cyril Jaquier b5c0f7bae2 - Added whois information to mail. Feature Request #1533626
19 years ago
Cyril Jaquier 894bcbdbbf - Improved mail script
19 years ago
Cyril Jaquier be7cc4f81c - Added mail script
19 years ago
Cyril Jaquier 9aa6a505eb - Added header
19 years ago
Cyril Jaquier 7048e19995 - 0.7.0 soon
19 years ago
Cyril Jaquier 12c222bd1c - One step forward to 0.7.0
19 years ago
Cyril Jaquier ea1948eff4 - Initial commit of the new development release 0.7
19 years ago
Cyril Jaquier 7e24b948bf - Added vsftpd support. Thanks to zugeschmiert
19 years ago
Cyril Jaquier de7acd4d6c - Added support for shorewall and hosts.deny
19 years ago
Cyril Jaquier 3e86a8204b - Removed 192.168.0.0/16 from ignoreip
19 years ago
Cyril Jaquier be26cd5b75 - Removed debug option
19 years ago
Cyril Jaquier 15806fc3da - Added permanent banning feature
19 years ago
Cyril Jaquier 840f6cd052 - Merged FAIL2BAN-0_5 with HEAD
19 years ago
Cyril Jaquier 07d127bebd - Added an initd script for RedHat/Fedora. Thanks to Andrey G. Grozin
20 years ago
Cyril Jaquier 7b118f42d3 - Initd script for Gentoo
20 years ago
Cyril Jaquier 9317581b18 - Modified for readability. Thanks to Iain Lea
20 years ago
Cyril Jaquier b0cae2c43f - Changed all sections to disabled by default
20 years ago
Cyril Jaquier 78b32ef3b2 - Added "ipfw-start-rule" option (thanks to Robert Edeker)
20 years ago
Cyril Jaquier 3122f5eeae - Added PID lock file option
20 years ago
Cyril Jaquier ff088ec333 - Added more comments
20 years ago
Cyril Jaquier 2e5bfe5bb6 - Changed Fail2Ban in order to handle several log files
20 years ago
Cyril Jaquier fabe6e59b4 - Add firewall and interface options
20 years ago
Cyril Jaquier aee13b03ee - Default config file
20 years ago