Commit Graph

1263 Commits (c258bb4a6a097699f239be96e33b8ab639d8a439)

Author SHA1 Message Date
Alexander Belykh 1983e15580 Add empty line between parameters in nftables-common.conf
9 years ago
Alexander Belykh f7f91a8bd4 Refactor common code out of nftables-multiport/allports.conf
9 years ago
sebres 69f5623f83 code simplifying (remove duplication): agent will be always supplied as parameter from jail.conf
9 years ago
Alexander Belykh 618e97bce8 Add nftables actions
9 years ago
sebres ac31121432 amend to fix fail2ban-version: correct user-agent for badips.py "Fail2Ban/ver", changeable within jail/config now;
9 years ago
Jordan Moeser e133762a28 Added HAProxy HTTP Auth filter
9 years ago
sebres cf334421bd Provides fail2ban version to jail (as interpolation variable during parse of jail.conf);
9 years ago
Yaroslav Halchenko 28c9832293 RF: harmonize jail.conf (no explicit enabled=false in jails, match filter name for screesharingd, etc)
9 years ago
Yaroslav Halchenko 69aa1feac0 Merge "Mac OS Screen Sharing filter" PR 1232
9 years ago
sebres d22b2498d4 normalizing time config entries: use time abbreviation (str2seconds) for all time options such 'dbpurgeage', 'bantime', 'findtime', ex.: default '1d' instead '86400';
9 years ago
Yaroslav Halchenko 26dd6d7425 Merge pull request #1258 from aleksandrs-ledovskis/feature/postfix-domain-not-found-failregex
9 years ago
Ross Brown 8d12dba245 Merge remote-tracking branch 'upstream/master'
9 years ago
Ross Brown ead2d509dc Updated 'murmur' filter to use new double-anchored regex based on @yarikoptic's suggestions.
9 years ago
Yaroslav Halchenko 5d6cead996 ENH: sshd filter -- match new "maximum auth attempts exceeded" (Closes #1269)
9 years ago
Ross Brown 106c3eab9a Added filter and jail for murmur/mumble-server.
9 years ago
Aleksandrs Ļedovskis fa59a6850f Add 'Sender address rejected: Domain not found' Postfix failregex
9 years ago
Orion Poplawski c656cb0d36 Merge branch 'master' into journaldefault
9 years ago
Orion Poplawski ba76f4ca2f Fix typo
9 years ago
Simon Brown 69bb532db0 removed system.log
9 years ago
Simon Brown 3e16f33dbe Removed old svn revision comment
9 years ago
Serg G. Brester eef7771b4e Merge pull request #1238 from sebres/fix/gh-1216
9 years ago
sebres e825e977cc Nginx log paths extended (prefixed with "*" wildcard)
9 years ago
sebres f359ed8c36 Fixed directly defined banaction for allports jails like pam-generic, recidive, etc with new default variable `banaction_allports` (+ man entries for both variables added);
9 years ago
Simon Brown 5839a3bd80 Removed includes comment for screensharing jail
9 years ago
sebres 53b39162a1 Shortly, much faster and stable version of regexp (possible because expression is start-anchored and does not contains closely to catch-all sub expressions)
9 years ago
sebres 6884593ab8 New filter `nginx-limit-req` ban hosts, that were failed through nginx by limit request processing rate (ngx_http_limit_req_module)
9 years ago
Orion Poplawski 0661aece46 Merge branch 'master' into journaldefault
9 years ago
Simon Brown 65bc5cf6ba Now using a literal logpath for screensharing jail
9 years ago
Simon Brown cabd46f069 Fixed blatant typo in regex
9 years ago
Simon Brown acee68a9ee Made screensharing jail off by default
9 years ago
Simon Brown 4b4d5a95b7 Changed regex prequel
9 years ago
Simon Brown 4c3f778b82 Replaced .* with literal
9 years ago
Simon Brown d17d837b8c Update jail.conf
9 years ago
Simon Brown de14946542 Added new path variable for system.log
9 years ago
Simon Brown 80546c6164 Added in settings for screensharingd filter
9 years ago
Simon Brown 3ec725a2ba Created file
9 years ago
1technophile 2861a957a9 filter for openhab domotic software authentication failure with the rest api and web interface + test cases;
9 years ago
Pablo Rodriguez Fernandez 2c576c64f8 Change domain filter regex
9 years ago
Pablo Rodriguez Fernandez 74fcb219ab Enhanced Google domain detection in apache-fakegooglebot
9 years ago
Orion Poplawski 3a9cf2b3da Add and use default_backend to set individual backend defaults to auto
9 years ago
Orion Poplawski ced7be94b2 Fix postfix_log typo
9 years ago
Orion Poplawski 75d33c0f09 Add *_backend options for services to allow distros to set the default backend
9 years ago
Pablo Rodriguez Fernandez a28e6b442e Add check in apache-fakegooglebot to protect against PTR fake record
9 years ago
agentmoller001 617302fcc2 Updated route.conf to clear warnings
9 years ago
sebres 2696ede251 mysqld-auth: Updated "Access denied ..." regex for MySQL 5.6 and later
9 years ago
Kevin Locke 36919d9f97 ssh.conf: Fix disconnect "Auth fail" matching
9 years ago
Viktor Szépe 0d8968daa9 Added CloudFlare API error codes URL
9 years ago
Yaroslav Halchenko ff06176e9e Merge remote-tracking branch 'origin/master' into enh-split-comma
9 years ago
M. Maraun 2895d981fa Set Timeout at urlopen to 3 seconds
9 years ago
Yaroslav Halchenko 8cf614e221 ENH: allow to split ignoreip by space and/or comma (Closes #1197)
9 years ago
Yaroslav Halchenko 55e542b273 Merge remote-tracking branch 'pr/1170/head' -- opensuse paths
9 years ago
Edward Beckett 835b3ff483 Update apache-badbots.conf
9 years ago
weberho f7af93a677 Added configuration for opensuse path
9 years ago
weberho d278fbca30 Fixed line suspected to be faulty
9 years ago
Yaroslav Halchenko c37009aec7 Merge branch 'grep-m1k' of github.com:szepeviktor/fail2ban
9 years ago
Yaroslav Halchenko 38c320798d Merge pull request #1127 from yarikoptic/enh-iptables-w-close-1122
9 years ago
Yaroslav Halchenko 0041bc3770 DOC: Changelog for shorewall-ipset-proto6.conf + adjusted its description
9 years ago
Yaroslav Halchenko de2f9504c0 Merge pull request #978 from ediazrod/patch-2
9 years ago
Yaroslav Halchenko 65cd218e10 Merge remote-tracking branch 'origin/master'
9 years ago
Viktor Szépe c8b3ee10a0 Limit the number of log lines in *-lines.conf actions
9 years ago
Thomas Mayer a19cb1b2b9 Merge 923d807ef8 into cf2feea987
9 years ago
Yaroslav Halchenko 3c0d7f5a4c BF: do not wrap iptables into itself. Thanks Lee
9 years ago
Viktor Szépe ebdfbae559 Added a space between IP address and the following colon
9 years ago
Yaroslav Halchenko 749d3c160c BF: symbiosis-blacklist-allports now also requires iptables-common.conf
9 years ago
Yaroslav Halchenko 916937bb6a RF: use <iptables> to take effect of it being a parameter
9 years ago
Yaroslav Halchenko 31dc4e2263 ENH: added lockingopt option for iptables actions, made iptables cmd itself a parameter
9 years ago
Yaroslav Halchenko 7a011fca1b DOC: adjusted comment in pass2allow-ftp to my suggested wording
10 years ago
Viktor Szépe 948b12e5df Fixed definition of knocking_url for pass2allow
10 years ago
Viktor Szépe b638e807ad Explicitly stating that knocking_url needs to be customized
10 years ago
Viktor Szépe 586703dcc2 Test, changelog and fixes to pass2allow
10 years ago
Viktor Szépe 5b7e1de2f4 Instead of allow-iptables-multiport actions swap blocktype and (new) returntype
10 years ago
Viktor Szépe 5d60700c0c Added pass2allow (knocking with fail2ban)
10 years ago
Viktor Szépe a3b8257b73 Add HEAD method verb to apache-badbots, nginx-badbots
10 years ago
Yaroslav Halchenko 8c4c17a880 Merge pull request #1004 from tsabi/fix-lc_time
10 years ago
Yaroslav Halchenko e38b4b8cb3 Merge pull request #1051 from leeclemens/bf/roundcube
10 years ago
Lee Clemens 3e902d7b3a Define roundcube_errors_log in paths-common.conf
10 years ago
Lee Clemens fdc3172aec Fix PEP8 E302 expected 2 blank lines, found X
10 years ago
Lee Clemens f7444f16b8 Add optional session id prefix for roundcube 1.1.1
10 years ago
Lee Clemens 2796534a5d Update regex to work with roundcube 1.0.5 on CentOS 6
10 years ago
Viktor Szépe b65a8b065d Other actions do not dive into this gory descriptions, but we do.
10 years ago
Viktor Szépe 2063ce4b23 All the arguments must be listed in [Init]
10 years ago
Viktor Szépe 79457112e9 Updated CF action
10 years ago
Yaroslav Halchenko 345820d2aa Merge pull request #1056 from ipoddubny/asterisk_security_log
10 years ago
Yaroslav Halchenko f41872f034 Merge pull request #1013 from szepeviktor/patch-4
10 years ago
Yaroslav Halchenko eb091d9b8c Merge remote-tracking branch 'origin/master' into pr-1039
10 years ago
Yaroslav Halchenko 8c4d4aa7fb minor: no tripple empty lines
10 years ago
Joern Muehlencord 4296d1a9a9 add froxlor-auth filter and jail
10 years ago
Joern Muehlencord 964cdb5d9b add froxlor-auth filter and jail
10 years ago
Ivan Poddubny 7a4e6fa6e5 Asterisk security log: add support for websocket protocol events
10 years ago
Ivan Poddubny 988d9a08da Asterisk security log: accept events containing Response/ExpectedResponse
10 years ago
Ivan Poddubny 189265a323 Asterisk security log: accept SessionID of PJSIP events
10 years ago
Ivan Poddubny ab2ac1a367 Asterisk security log: accept <unknown> in AccountID
10 years ago
Ivan Poddubny 977f9955e7 Asterisk security log: accept EventTV in ISO8601
10 years ago
Anton Shestakov 56e5821c06 Match unknown user in dovecot's passwd-file auth database
10 years ago
Aaron Brice 7ae0ef2408 Fix actions in ufw.conf
10 years ago
Lee Clemens 8f792f52fb Add drupal-auth filter and jail
10 years ago
Lee Clemens b530d88eca Merge remote-tracking branch 'upstream/master' into bf/1000-asteriskBlocksSelf
10 years ago
Markus Oesterle f8c7247f42 added \s after host
10 years ago
Markus Oesterle 5f2807b41f replaced .* before rhost with regex matching all the previous fields
10 years ago
Markus Oesterle 8825a5f31b updated filter.d/sshd.conf
10 years ago
Viktor Szépe e776a4e1ab Update proftpd.conf
10 years ago
Viktor Szépe f9e8a99a79 Non-US locale warning for proftpd
10 years ago
Thomas Mayer 923d807ef8 use human-readable variable names (issue #1003)
10 years ago
Thomas Mayer 675c3a7c95 use printf instead of echo for POSIX compatibility (issue #1003)
10 years ago
Thomas Mayer ac1e41ea70 Revert "remove '-ne' option as it's not interpreted any way (issue #1003)"
10 years ago
Thomas Mayer 4a598070c8 remove '-ne' option as it's not interpreted any way (issue #1003)
10 years ago
Thomas Mayer 80f11a4d28 Add empty Init Section to pass tests (issue #1003)
10 years ago
Thomas Mayer c9b24839e4 Character detection heuristics for whois output via optional setting in mail-whois*.conf (Closes #1003)
10 years ago
Csaba Tóth 0720c831b7 Fix of LC_TIME usage, it should be LC_ALL
10 years ago
Lee Clemens 72f4bcfbff Match hacking attempt IP instead of asterisk server IP (closes #1000)
10 years ago
Yaroslav Halchenko d28880fdca Merge pull request #997 from yarikoptic/bf/long-purge-for-recidive
10 years ago
ediazrod 5fdd1d1ded Update shorewall-ipset-proto6.conf
10 years ago
ediazrod e26a1ad6b6 Update shorewall-ipset-proto6.conf
10 years ago
Yaroslav Halchenko 56aacf872c Merge pull request #952 from ache/master
10 years ago
Yaroslav Halchenko 02836b599c Added a comment about systemd backend for jails with logs outside of journal (Closes #959)
10 years ago
Yaroslav Halchenko 320a28a4a4 DOC: make a warning for recidive jail to increase dbpurgeage (Closes #964)
10 years ago
ediazrod d0887f3234 This is a especific configuration for shorewall ipset proto6
10 years ago
Yaroslav Halchenko e788e3823e Merge pull request #965 from TorontoMedia/master
10 years ago
TorontoMedia b4f1f613bb Update firewallcmd-allports.conf
10 years ago
TorontoMedia 0fac7e40b6 Update firewallcmd-multiport.conf
10 years ago
Yaroslav Halchenko 07b0ab07ad Merge branch 'master' of https://github.com/rumple010/fail2ban
10 years ago
Yaroslav Halchenko d5e68abf95 ENH: check badips.com response on presence of "categories" in it
10 years ago
Ache ae1451b29f Update bsd-ipfw.conf
10 years ago
Yaroslav Halchenko 3fb2becddb Merge pull request #949 from leeclemens/enh/configSyslogSocket
10 years ago
Lee Clemens 6268eb32be Use syslogsocket value "auto" to determine syslog socket's path
10 years ago
Luke Hollins 549ab24e70 Fixed grammatical error in emails sent
10 years ago
Yaroslav Halchenko 119a7bbb16 Merge pull request #939 from szepeviktor/geoip
10 years ago
Viktor Szépe 4c88a00c28 Line notes implemented
10 years ago
Lee Clemens 445fd7367f Configure Syslog Socket Path
10 years ago
František Šumšal eb0d086ed0 Merge branch 'master' into nginx-botsearch
10 years ago
František Šumšal 1c6d2074fb Changed default settings for nginx-botseach filter
10 years ago
Orion Poplawski e7ff7e90b7 [postfix-sasl] update regexes
10 years ago
František Šumšal fb0f463eac Include consistency
10 years ago
František Šumšal 705718be52 Filter apache-botsearch.conf now loads variables from botsearch-common.conf
10 years ago
František Šumšal 18778d9174 Created botsearch-common.conf
10 years ago
Yaroslav Halchenko 73af02ffc6 Merge pull request #940 from leeclemens/ENH/ApacheFakeGoogleBot
10 years ago
Yaroslav Halchenko df581fe6e2 Merge pull request #929 from opoplawski/pam_auth
10 years ago
Yaroslav Halchenko 7ada96b4e9 Merge pull request #932 from opoplawski/dovecot
10 years ago
František Šumšal f8fe165cd2 Switched from tabs to spaces for indents
10 years ago
Yaroslav Halchenko 8f6d9c6a5a Merge branch 'enh/local_time_zone' of https://github.com/yarikoptic/fail2ban
10 years ago
Lee Clemens 841c476045 Merge branch 'enh/fakegooglebot' of https://github.com/yarikoptic/fail2ban into yarikoptic-enh/fakegooglebot
10 years ago
Yaroslav Halchenko 15b65c7ad2 NF: apache-fakegooglebot ignorecommand + DNSUtils.ipToName
10 years ago
Lee Clemens 7e94ba6f0c Remove implementation specific suffix
10 years ago
Lee Clemens 854915920f Remove implementation specific suffix
10 years ago
Lee Clemens af078532ac New jail: apache-fakegooglebot
10 years ago
Viktor Szépe 1619ab3145 Added sendmail-geoip-lines.conf
10 years ago
Yaroslav Halchenko ec6a30efcf ENH: define ignoreregex for all filters explicitly, to avoid warnings (Closes #934)
10 years ago
František Šumšal c8e82f18b6 Add jail nginx-botsearch
10 years ago
Orion Poplawski b4776a1ba0 Match dovecot unknown user line
10 years ago
Orion Poplawski 3bc92610f7 Add dovecot auth failure from EL7
10 years ago
Andrew St. Jean 6bdfe756cf Changed default TTL value to 60 seconds.
10 years ago
Orion Poplawski 79b5a2617f Add filter variable __pam_auth to allow easier changing of pam auth backend
10 years ago
Andrew St. Jean 43732acae1 Added a reminder to create an nsupdate.local file to set required options.
10 years ago
Yaroslav Halchenko 085d0f72ed ENH: use non-UTC date invocation (without -u) and report offset for localzone (%z)
10 years ago
Yaroslav Halchenko 65980a70fc Merge branch 'enh/recidive-allports' of https://github.com/yarikoptic/fail2ban
10 years ago
rumple010 eb76dcd5a0 add nsupdate action
10 years ago
sebres 12e3cca3f2 port[s] typo fixed in jail.conf/nginx-http-auth, issue gh-913
10 years ago
Yaroslav Halchenko 083031524d BF: adding missing Definition section header to firewallcmd-allports
10 years ago
TorontoMedia d7b7f4bc91 Update firewallcmd-allports.conf
10 years ago
Lee Clemens 77677e43df Merge branch 'master' of github.com:fail2ban/fail2ban into ENH/PostfixRBL
10 years ago
Lee Clemens bda8dc1926 Merge branch 'master' of github.com:fail2ban/fail2ban into ENH/PostfixRBL
10 years ago
TorontoMedia 7eed55266b Created firewallcmd-multiport
10 years ago
TorontoMedia 9f91cb2fd8 Created firewallcmd-allports
10 years ago
TorontoMedia 50e5fd9ed7 Create firewallcmd-multiport.conf
10 years ago
TorontoMedia 591e444753 Create firewallcmd-allports.conf
10 years ago
Lee Clemens 0f48cf4284 loosen up regex for spamhaus (spamcop says "Blocked" as part of url)
10 years ago
Lee Clemens fe72a5585c Create Jail for Postfix based on RBL
10 years ago
Lee Clemens 2d7429c47c Add 'Client host rejected error message' regex
10 years ago
Viktor Szépe 81b3dbde1d postfix-sasl failregex case insensitive
10 years ago
bes-internal ccc986b7d8 exim filter: correct failregex for exim with extended log options
10 years ago
Orion Poplawski d8867807f5 Separate php-url-fopen logpath by newline
10 years ago
Guillaume FRANCOIS a6a2dc868b Add ignoreregex to avoid warning on start
10 years ago
Guillaume FRANCOIS 9269664350 Add ignoreregex to avoid warning on start
10 years ago
Yaroslav Halchenko 2a3790f8e8 use iptables-allports for recidive
10 years ago
Yaroslav Halchenko 967485c2d0 improving grepping
10 years ago
Yaroslav Halchenko efbf5064a1 Merge pull request #807 from xslidian/patch-1
10 years ago
Orion Poplawski 01b2673e34 Use multiport for firewallcmd-new
10 years ago
Yaroslav Halchenko 36abb5ed96 BF: fix $ for % in jail.conf. Debian bug #767255
10 years ago
pacop e3a037ee3f merge master
10 years ago
pacop ce4f2d1c88 added filter for PortSentry with jail and samples
10 years ago
SlowRiot fc5f729f01 adding jail conf for shellshock filter
10 years ago
SlowRiot 4f636eb0e3 adding filter to detect Shellshock attack attempts against bash scripts through apache. See http://seclists.org/oss-sec/2014/q3/650
10 years ago
Nick Weeds 2c158fe168 Add apache filter for AH01630 client denied by server configuration
10 years ago
Yaroslav Halchenko 0e1f8f7f39 RF: remove those two additional failregexes for the postfix
10 years ago
Yaroslav Halchenko 96c20c8379 Merge pull request #804 from pleasantone/master
10 years ago
Yaroslav Halchenko c58c4de9bc ENH: add empty ignoreregex to avoid a warning (Close #805)
10 years ago
Dean Lee ba44ff312b grep IP at the start of lines
10 years ago
Paul Traina 249e169d8e Update test cases and also suport smtps per request.
10 years ago
Daniel Black 1864f75b3b Credits and notes from #806
10 years ago
weberho d2c086b187 fixed encoding
10 years ago
weberho 218ffe862e fixed encoding
10 years ago
Paul Traina 544cfaff2c Add support for postfix/submission/smtpd matching.
10 years ago
Yaroslav Halchenko 0d9cfb84e3 Merge pull request #778 from yarikoptic/enh/symbiosis
10 years ago
Yaroslav Halchenko 426ed7ff2f Merge pull request #780 from opoplawski/logpath
10 years ago
Yaroslav Halchenko 93243e7d57 ENH: Ignore errors while unbaning in symbiosis firewall
10 years ago
Luc Maisonobe 763115b1eb added systemd configuration for postfix-sasl.conf
10 years ago
Yaroslav Halchenko aee560b1c6 Merge branch 'master' of git://github.com/fail2ban/fail2ban
10 years ago
Yaroslav Halchenko 6fc04c2256 Merge branch 'bf+enh/cyrus-imap' of https://github.com/yarikoptic/fail2ban (with some tune up to Changelog entry)
10 years ago
Yaroslav Halchenko f403bad0ab Merge pull request #775 from alimony/patch-1
10 years ago
Yaroslav Halchenko b79a82ebdd minor typo
10 years ago
Orion Poplawski 6b554fbe98 Fxi jail.conf to use more syslog macros
10 years ago
Yaroslav Halchenko 818dd59d65 ENH: symbiosis-blacklist-allports action
10 years ago
Markus Amalthea Magnuson 7b76322898 Fix typos.
10 years ago
Yaroslav Halchenko 4a23a7dcf1 Merge pull request #766 from leftyfb/master
10 years ago
leftyfb 6dbd449f77 Changed to Cloudflare JSON API
10 years ago
Jisoo Park 2e7b8adb3b Fix sieve filter to use correct option
10 years ago
Yaroslav Halchenko f19c5fc939 Merge pull request #770 from eltrai/master
10 years ago
Yaroslav Halchenko f9cfbd66e6 Merge pull request #771 from szepeviktor/patch-1
10 years ago
Szépe Viktor 143a55bf26 Update courier-smtp.conf
10 years ago
Yaroslav Halchenko 2d7f2fa33f Merge pull request #756 from marclaporte/patch-1
10 years ago
Yaroslav Halchenko 45c1095606 Merge pull request #750 from niorg/master
10 years ago
Yaroslav Halchenko 3339dc8d84 ENH: cyrus-imap -- catch also 'user not found' attempts
10 years ago
Yaroslav Halchenko 3e5c598b79 BF: cyrus-imaps -- catch also for secured daemons
10 years ago
Szépe Viktor d757ef584f Update courier-smtp.conf
11 years ago
Szépe Viktor a786e8a29b named users + smtp atuh probes
11 years ago
Pierre-Alain Dupont 3d7504c19e Forwards bantime to action scripts
11 years ago
leftyfb cba570cabd Updated comments
11 years ago
leftyfb 5471e99ebe Added cloudflare action
11 years ago
Yaroslav Halchenko 6cddc65cee BF: path to exim's mainlog on Fedora (Thanks Frantisek Sumsal) + changelog entry
11 years ago
Yaroslav Halchenko 43950d8b7e BF: fix path to the exim log on Debian systems (/var/log/exim4)
11 years ago
Marc Laporte 3777591ab0 typo
11 years ago
Cyril Roos add8e61036 Added Directadmin filter, jail and log test
11 years ago
Yaroslav Halchenko 0adb10f653 Merge branch 'ainfo-copy' of https://github.com/kwirk/fail2ban
11 years ago
Steven Hiscocks 2d54161696 Merge branch 'kwirk/harmonize-log-msgs'
11 years ago
Steven Hiscocks 76a5633ff9 Merge pull request #739 from ranvis/enh-iptables-ipsets
11 years ago
SATO Kentaro 65ff3e9604 ENH: Introduce iptables-common.conf.
11 years ago
Steven Hiscocks 94232d7c31 Merge pull request #726 from pmarrapese/master
11 years ago
Steven Hiscocks 8268c1641f BF: aInfo could be modified by actions, causing unexpected behaviour
11 years ago
Yaroslav Halchenko 93d5c363ca Merge branch 'enh/oracle_msg_server'
11 years ago
SATO Kentaro 1e1c4ac62a ENH: Add <chain> to iptables-ipsets.
11 years ago
Yaroslav Halchenko 994fe77e59 ENH: make oracleims failregex better anchored (more explicit)
11 years ago
JoelSnyder 5165d2f6ea Update oracleims.conf to be 'less greedy'
11 years ago
JoelSnyder 70ed93d8cc Update jail.conf for oracleims filter.
11 years ago
Steven Hiscocks e8131475cd ENH: Realign and harmonise log messages with getF2BLogger helper
11 years ago
Steven Hiscocks db023be09b BF: Fix bad syntax in badips.py action
11 years ago
JoelSnyder 9b7c35810a Create oracleims.conf in filter.d for new filter
11 years ago
pmarrapese 96918acee4 more explicit match for sshd filter & added test
11 years ago
pmarrapese 46d6e93800 adjusted sshd filter regex to catch more verbose lines
11 years ago
Steven Hiscocks 77ba065571 Merge pull request #697 from jhmartin/monit_admin_hack
11 years ago
Steven Hiscocks bc10b64c69 ENH: Match non "Bye Bye" for sshd locked accounts failregex
11 years ago
Yaroslav Halchenko 596b819bdc DOC: minor -- tabify docstring in badips.py action
11 years ago
Jason Martin 9c3cb31862 Even stricter monit regex, now covers entire line
11 years ago
Jason Martin 72bfd14330 Tidy up filter.d/monit.conf, make regex more complete.
11 years ago
Steven Hiscocks 03d90c2f42 BF: recidive filter and samples at wrong log level: WARNING->NOTICE
11 years ago
Jason Martin 7d112430ca Block brute-force attempts against the Monit gui
11 years ago
Steven Hiscocks d4427e5a76 Merge pull request #683 from yarikoptic/fix/682
11 years ago
Steven Hiscocks 9fcb92524e BF: badips.py action logging of exc_info on debug typo
11 years ago
Yaroslav Halchenko 8bcb25c3a2 defining empty defaults for syslog_ log targets for common (Thanks @chtheis, partial fix to #682)
11 years ago
Yaroslav Halchenko 7dcea0d48d typos of paths-common (Thanks @chtheis, partial fix to #682)
11 years ago
Yaroslav Halchenko 5bccec61e4 ENH: adding pruned with previous merge trailing \s* in nginx filter
11 years ago