fail2ban/config/filter.d
Daniel Black 6b0e2289d4 Merge pull request #335 from grooverdan/gh-333-bind
ENH: filter.d/named-refused.conf - BIND 9.9.3 regex changes. Closes gh-333
2013-08-30 21:34:22 -07:00
..
3proxy.conf ENH: sample log + more specific regex 2013-06-13 10:23:14 +10:00
apache-auth.conf RF: do not catch for now "invalid nonce \S* received - hash is not \S*" -- imho needs more analysis 2013-08-26 09:48:56 -04:00
apache-badbots.conf DOC: purge of svn tags 2013-05-03 16:03:38 +10:00
apache-common.conf BF: duplicate regex match fixed 2013-08-25 21:13:11 +10:00
apache-nohome.conf BF: duplicate regex match fixed 2013-08-25 21:13:11 +10:00
apache-noscript.conf BF: anchor apache- filters. Close #248 2013-06-11 19:19:25 -04:00
apache-overflows.conf BF: anchor apache- filters. Close #248 2013-06-11 19:19:25 -04:00
assp.conf BF: missed a space 2013-06-14 12:35:44 +10:00
asterisk.conf fail2ban-users: Sebastian Arcus - Detect device auth failures on Asterisk 11 2013-07-27 00:06:06 +00:00
common.conf BF: make colon after [daemon] optional. Close #267 2013-06-27 11:44:47 -04:00
courierlogin.conf ENH: Improve courierlogin regex and add sample logs 2013-07-20 15:53:18 +01:00
couriersmtp.conf ENH: Improve couriersmtp and add sample logs 2013-07-20 15:34:00 +01:00
cyrus-imap.conf ENH: Simplify cyrus-imap filter fail regex 2013-07-26 11:55:09 +01:00
dovecot.conf ENH: dovecot filter additions for session, time value and blank user 2013-07-05 18:36:02 +01:00
dropbear.conf ENH: hardened added dropbear failregex to avoid trailing .* and enclose username in '' 2013-08-08 09:58:36 -04:00
exim-common.conf ENH: split out exim-spam into speparate filter 2013-07-02 20:03:16 +10:00
exim-spam.conf ENH: split out exim-spam into speparate filter 2013-07-02 20:03:16 +10:00
exim.conf ENH: filter.d/exim.conf - add authentication failures for "plain" authentication 2013-08-25 23:02:10 +10:00
gssftpd.conf DOC: purge of svn tags 2013-05-03 16:03:38 +10:00
lighttpd-auth.conf ENH: further tighten lighttpd basic auth regex 2013-08-26 08:51:40 +10:00
mysqld-auth.conf ENH: for consistency (and future expansion ;)) -- rename to mysqld-auth 2013-04-09 18:03:34 -04:00
named-refused.conf ENH: anchor regex at start 2013-08-28 12:32:40 +10:00
pam-generic.conf DOC: purge of svn tags 2013-05-03 16:03:38 +10:00
perdition.conf ENH: authentication_id can be an imap4 quoted string, whatever that is, so using .+ as its id 2013-07-24 10:44:52 +10:00
php-url-fopen.conf added two new filter files (PHP url_fopen, lighttpd fastcgi alerts), updated MANIFEST and jail.conf accordingly 2009-08-30 14:17:29 +00:00
postfix.conf ENH: filter.d/postfix - add filter for VRFY. Closes gh-322 2013-08-19 18:42:39 +10:00
proftpd.conf ENH: Minor tweak on previous commit proftpd regex changes 2013-08-09 19:04:26 +01:00
pure-ftpd.conf DOC: purge of svn tags 2013-05-03 16:03:38 +10:00
qmail.conf DOC: purge of svn tags 2013-05-03 16:03:38 +10:00
recidive.conf ENH: moved jail definition for recidive into jail.conf + swapped/commented durations + non-groupping ?: 2012-01-26 23:28:44 -05:00
roundcube-auth.conf BF: filter.d/routecube-auth - time offset can be positive or negative 2013-08-28 11:57:38 +10:00
sasl.conf DOC: purge of svn tags 2013-05-03 16:03:38 +10:00
sieve.conf ENH: Simplify sieve filter failregex 2013-07-26 12:01:09 +01:00
sogo-auth.conf ENH: Slight tune ups for fresh SOGo filter + comment into the sample log file 2013-03-27 11:09:54 -04:00
sshd-ddos.conf BF: filter.d/sshd "Did not receive identification string" relates to an exploit so document this in sshd-ddos.conf but leave it out of authentication based blocks in sshd.conf 2013-04-18 04:38:03 +10:00
sshd.conf ENH: filter.d/sshd.conf -- allow for trailing "via IP" in logs 2013-05-07 12:22:49 -04:00
suhosin.conf ENH: Change lighttpd-fastcgi to suhosin, and improve regex and samples 2013-07-21 16:35:37 +01:00
vsftpd.conf DOC: purge of svn tags 2013-05-03 16:03:38 +10:00
webmin-auth.conf DOC: purge of svn tags 2013-05-03 16:03:38 +10:00
wuftpd.conf ENH: trailing space as per discussion on gh-303 2013-08-19 21:42:43 +10:00
xinetd-fail.conf ENH: Improve xinetd-fail regex and add sample logs 2013-07-21 15:44:09 +01:00