sebres
c8f473110c
change log update after rebase
2017-01-21 15:59:27 +01:00
sebres
3276bd6d54
sshd: additionally aggressive filter rules - no matching cipher resp. no matching key exchange method (gh-1545, gh-1117)
2017-01-21 15:57:05 +01:00
sebres
628789f9a9
sshd: conditional parameter "mode" for sshd jail (normal, ddos, aggressive)
...
filter sshd-ddos and new filter sshd-aggressive are both derivation of sshd-filter
2017-01-21 15:54:49 +01:00
sebres
dd373dba9f
test all config-regexp, that contains greedy catch-all before <HOST>, that is hard-anchored at end or precise sub expression after <HOST>;
...
new ssh rule(s) added:
- Connection reset by peer (multi-line rule during authorization process);
- No supported authentication methods available;
Single line and multi-line expression optimized, added optional prefixes and suffix (logged from several ssh versions);
closes gh-864
2017-01-21 15:53:48 +01:00
Serg G. Brester
5e08298b6b
Update ChangeLog
2017-01-20 08:47:30 +01:00
Christian Brandlehner
a4d8426401
Support for IBM Domino SMTP task ( #1603 )
...
filter.d/domino-smtp.conf
2017-01-20 08:44:20 +01:00
Serg G. Brester
40f294e6bf
Merge pull request #1663 from jjeziorny/netscaler-action
...
Introduced citrix netscaler action
2017-01-19 16:25:23 +01:00
Serg G. Brester
75b252e47f
Update ChangeLog
2017-01-19 15:00:08 +01:00
Juliano Jeziorny
1fe554dd25
Introduced Citrix Netscaler action
2017-01-19 14:30:25 +01:00
Serg G. Brester
063a11564b
Merge pull request #1673 from chtheis/master
...
Wrong paths for apache and nginx under FreeBSD
2017-01-18 17:12:20 +01:00
Christoph Theis
fe76cd9b7d
#1667 : changelog entry
2017-01-17 14:05:20 +01:00
Christoph Theis
6187431629
#1667 : Wrong paths for apache and nginx under FreeBSD
2017-01-17 11:48:25 +01:00
Serg G. Brester
5bfdd521f0
Merge pull request #1669 from sebres/0.10-recognize-restored-tickets
...
Recognize state of restored tickets
2017-01-17 09:39:56 +01:00
sebres
f35da076df
ChangeLog entry
2017-01-16 09:55:01 +01:00
sebres
74a6afadd5
Mail-actions switched to use new option "norestored" instead of checking of variable `restored` during shell execution (prevents executing of such actions at all).
2017-01-16 09:40:48 +01:00
sebres
8b82c6669e
provide name of action to fail-message (e. g. if interpolation fails)
2017-01-16 09:34:10 +01:00
sebres
0aa241d303
Another way to recognize restored tickets - new option `norestored` of action introduced;
...
Complete prevents executing of ban/unban operations for actions where norestored = true.
2017-01-16 09:05:45 +01:00
sebres
2ed2e7810d
normalization of DefinitionInitConfigReader (action / filter): client-side interpolation, etc.
2017-01-16 09:03:06 +01:00
sebres
de49f0c27f
ChangeLog entry
2017-01-13 19:45:10 +01:00
sebres
ee3c787cc6
Recognize restored (from database) tickets after restart (tell action restored state of the ticket);
...
Prevent executing of several actions (e.g. mail, send-mail etc) on restart (bans were already notified).
Test cases extended (smtp and by restart in ServerReloadTest).
Closes gh-1141
Closes gh-921
2017-01-13 19:06:17 +01:00
oliverdorn
4a65e069e1
Solution for issue #1665
...
Solves the issue of authentic GoogleBots being banned by apache-fakegooglebots.
2017-01-13 08:59:45 +01:00
Serg G. Brester
6f190b6e61
readme.md: added IPv6 launch logo for 0.10th branch
...
Closes gh-1647
2017-01-12 12:41:08 +01:00
sebres
bf872213bd
amend for 7019640eb3
(fix-gh-1658): sshd test-cases extended with IPv6 to cover this fix
2017-01-10 13:48:17 +01:00
sebres
7019640eb3
Merge branch 'fix-gh-1658' into 0.10
2017-01-10 12:59:51 +01:00
sebres
a9523aefbb
sshd.conf: fixed non-anchored part of regex (misleading match of colon inside IPv6 address instead of `: ` in the reason-part by missing space).
2017-01-10 12:58:44 +01:00
sebres
c9f32f75e6
Merge branch '0.9-fix-regex-using-journal' into 0.10-fix-regex-using-journal (merge point against 0.9 after back-porting gh-1660 from 0.10)
2017-01-10 11:25:41 +01:00
sebres
f8d35a7c9c
changelog entry
2017-01-10 11:16:17 +01:00
sebres
2009f1c434
fail2ban-regex: fix for systemd-journal (see gh-1657)
2017-01-10 11:13:18 +01:00
sebres
fb27d9ce83
fail2ban-regex: fix for systemd-journal (see gh-1657)
2017-01-10 10:59:53 +01:00
Yaroslav Halchenko
31a1560eaa
minor typos (thanks Vincent Lefevre, Debian #847785 )
2016-12-11 15:13:11 -05:00
Yaroslav Halchenko
4a1fd888f0
Carry on development
2016-12-11 00:49:09 -05:00
Yaroslav Halchenko
3605155978
updated man pages
2016-12-09 09:36:08 -05:00
Yaroslav Halchenko
482252dbd4
ENH: prep for 0.9.6 release (as of tomorrow)
2016-12-09 09:35:03 -05:00
Yaroslav Halchenko
e550850b9c
BF: added missing entires into MANIFEST
2016-12-09 09:34:44 -05:00
Serg G. Brester
556a9373ce
Update ChangeLog
2016-11-28 23:40:33 +01:00
Serg G. Brester
feae7370ce
Update THANKS
2016-11-28 23:19:24 +01:00
sebres
45f1d811c9
Merge branch 'alex1702-1586'
2016-11-28 18:54:02 +01:00
sebres
67c14afd8e
ChangeLog entry added + jail.conf review
2016-11-28 18:51:23 +01:00
sebres
425170cef3
code review, makes the test cases workable, added dev-notes
2016-11-28 18:39:07 +01:00
Serg G. Brester
8d9fe5d3da
Merge pull request #1583 from sebres/_0.10/fix-datedetector-grave-fix-v2
...
0.10/datedetector grave fix
2016-11-28 17:37:36 +01:00
sebres
8018796b45
wrong indentation (important code-piece in if log-level only)
2016-11-28 17:17:48 +01:00
sebres
39c343bd06
better reorder templates handling, code coverage increase (a small part of _reorderTemplate was not covered at all)
2016-11-28 15:18:31 +01:00
sebres
5d5ab27435
small amend: removed unreachable code + coverage increase
2016-11-28 13:17:36 +01:00
Serg G. Brester
f827675822
Merge pull request #1627 from sebres/fix-gh-1626
...
Fix gh-1626: one space after ModSecurity
2016-11-28 12:00:53 +01:00
sebres
b8c41dcb49
ChangeLog update
2016-11-28 11:31:51 +01:00
sebres
931eab84b5
`filter.d/apache-modsecurity.conf`
...
- fixed for newer version (one space, closes gh-1626)
reviewed and optimized:
- non-greedy catch-all replaced for safer match
- unneeded catch-all anchoring removed
- non-capturing groups
2016-11-28 11:28:27 +01:00
sebres
c06084d7d9
_start_params - fix: symlinks should be absolute paths
2016-11-28 11:04:37 +01:00
sebres
40cbe96352
Merge remote-tracking branch 0.10 into _0.10/fix-datedetector-grave-fix-v2
2016-11-28 11:03:11 +01:00
Serg G. Brester
389ad10344
Merge pull request #1622 from sebres/_0.10/configreader-and-more
...
0.10/configreader and more: substitution `%(param)s` from init block
2016-11-28 10:08:30 +01:00
Serg G. Brester
b8b5907706
Merge pull request #1624 from sebres/fix-gh-1623
...
filter.d/dovecot.conf update: ignore additionally irrelevant info in anchored regex before "auth failed"
2016-11-26 17:07:39 +01:00