fail2ban/config/filter.d
Yaroslav Halchenko 9d4b613ee4 Merge branch '3proxy' of https://github.com/grooverdan/fail2ban
* '3proxy' of https://github.com/grooverdan/fail2ban:
  BF: fix to proxy port in 3proxy example
  ENH: sample log + more specific regex
  BF: authentication errors end in 01-09 but the beginning part indicates the service as per https://github.com/fail2ban/fail2ban/issues/246#issuecomment-19327955 thanks to ykimon
  BF: need to anchor the start to avoid another repeat of DoS injection like Apache
  ENH: stricter regex thanks to Steven Hiscocks (kwirk)
  DOC: credits

Conflicts:
	ChangeLog
2013-06-14 12:32:51 -04:00
..
3proxy.conf ENH: sample log + more specific regex 2013-06-13 10:23:14 +10:00
apache-auth.conf BF: anchor apache- filters. Close #248 2013-06-11 19:19:25 -04:00
apache-badbots.conf DOC: purge of svn tags 2013-05-03 16:03:38 +10:00
apache-common.conf BF: anchor apache- filters. Close #248 2013-06-11 19:19:25 -04:00
apache-nohome.conf BF: anchor apache- filters. Close #248 2013-06-11 19:19:25 -04:00
apache-noscript.conf BF: anchor apache- filters. Close #248 2013-06-11 19:19:25 -04:00
apache-overflows.conf BF: anchor apache- filters. Close #248 2013-06-11 19:19:25 -04:00
assp.conf BF: missed a space 2013-06-14 12:35:44 +10:00
asterisk.conf ENH: asterisk -- use \S instead of [^:] + prefix failregex with ^\[ 2013-06-13 23:15:48 -04:00
common.conf Merge branch 'bsd_logs' of https://github.com/grooverdan/fail2ban 2013-05-08 10:30:04 -04:00
courierlogin.conf DOC: purge of svn tags 2013-05-03 16:03:38 +10:00
couriersmtp.conf DOC: purge of svn tags 2013-05-03 16:03:38 +10:00
cyrus-imap.conf DOC: purge of svn tags 2013-05-03 16:03:38 +10:00
dovecot.conf ENH: dovecot regexs rewritten and extra failures 2013-06-13 23:52:15 +10:00
dropbear.conf DOC: purge of svn tags 2013-05-03 16:03:38 +10:00
exim.conf BF/ENH: Incorrect authentication data doesn't need tailier so that's optional. Also gained log entry for Unrouteable address 2013-06-14 18:12:53 +10:00
gssftpd.conf DOC: purge of svn tags 2013-05-03 16:03:38 +10:00
lighttpd-auth.conf ENH: join both failregex for lighttpd-auth into a single one 2012-09-30 11:30:24 -04:00
lighttpd-fastcgi.conf added two new filter files (PHP url_fopen, lighttpd fastcgi alerts), updated MANIFEST and jail.conf accordingly 2009-08-30 14:17:29 +00:00
mysqld-auth.conf ENH: for consistency (and future expansion ;)) -- rename to mysqld-auth 2013-04-09 18:03:34 -04:00
named-refused.conf DOC: purge of svn tags 2013-05-03 16:03:38 +10:00
pam-generic.conf DOC: purge of svn tags 2013-05-03 16:03:38 +10:00
php-url-fopen.conf added two new filter files (PHP url_fopen, lighttpd fastcgi alerts), updated MANIFEST and jail.conf accordingly 2009-08-30 14:17:29 +00:00
postfix.conf DOC: purge of svn tags 2013-05-03 16:03:38 +10:00
proftpd.conf ENH: proftpd chan accept usernames with spaces 2013-06-14 00:29:43 +10:00
pure-ftpd.conf DOC: purge of svn tags 2013-05-03 16:03:38 +10:00
qmail.conf DOC: purge of svn tags 2013-05-03 16:03:38 +10:00
recidive.conf ENH: moved jail definition for recidive into jail.conf + swapped/commented durations + non-groupping ?: 2012-01-26 23:28:44 -05:00
roundcube-auth.conf fixed failregex line for roundcube 0.9+ 2013-05-25 19:26:13 +02:00
sasl.conf DOC: purge of svn tags 2013-05-03 16:03:38 +10:00
sieve.conf DOC: purge of svn tags 2013-05-03 16:03:38 +10:00
sogo-auth.conf ENH: Slight tune ups for fresh SOGo filter + comment into the sample log file 2013-03-27 11:09:54 -04:00
sshd-ddos.conf BF: filter.d/sshd "Did not receive identification string" relates to an exploit so document this in sshd-ddos.conf but leave it out of authentication based blocks in sshd.conf 2013-04-18 04:38:03 +10:00
sshd.conf ENH: filter.d/sshd.conf -- allow for trailing "via IP" in logs 2013-05-07 12:22:49 -04:00
vsftpd.conf DOC: purge of svn tags 2013-05-03 16:03:38 +10:00
webmin-auth.conf DOC: purge of svn tags 2013-05-03 16:03:38 +10:00
wuftpd.conf DOC: purge of svn tags 2013-05-03 16:03:38 +10:00
xinetd-fail.conf DOC: purge of svn tags 2013-05-03 16:03:38 +10:00