You can not select more than 25 topics Topics must start with a letter or number, can include dashes ('-') and can be up to 35 characters long.
fail2ban/config/filter.d
RyuaNerin bba8844af8
typo
4 years ago
..
ignorecommands amend for 3036ed18893b6aae6619e53201aa53deb701b94f: eliminate "invalid sequence" warnings 6 years ago
3proxy.conf added possibility to specify more precise default date pattern: 8 years ago
apache-auth.conf filter.d/apache-auth.conf: 5 years ago
apache-badbots.conf Merge remote-tracking branch 'upstream/master' into 0.10 7 years ago
apache-botsearch.conf Merge branch 'master' into 0.10 7 years ago
apache-common.conf filter.d/apache-auth.conf: 5 years ago
apache-fakegooglebot.conf more precise date template handling (WARNING: this commit creates possible incompatibilities): 8 years ago
apache-modsecurity.conf updated 6 years ago
apache-nohome.conf DOC: in filters, put user relevant doc at top, and developer info at bottom, and remove all the repetative blindly copied stuff that appears in the jail man page 11 years ago
apache-noscript.conf filter.d/apache-noscript.conf: extended to match "script not found" with error AH02811 (and cgi-bin path segment in script) 4 years ago
apache-overflows.conf filter.d/apache-overflows.conf: rewritten without end-anchor ($), because apache-log could contain very long URLs (and/or referrer), the parsing of it anchored way may be very vulnerable (at least as regards the system resources, see gh-1790). 8 years ago
apache-pass.conf more precise date template handling (WARNING: this commit creates possible incompatibilities): 8 years ago
apache-shellshock.conf Merge remote-tracking branch 'remotes/gh-upstream/master' into 0.10 7 years ago
assp.conf Merge branch '0.9-fix-regex-using-journal' into 0.10-fix-regex-using-journal (merge point against 0.9 after back-porting gh-1660 from 0.10) 8 years ago
asterisk.conf filter.d/asterisk.conf: relaxing protocol RE-part before IP in RemoteAddress (gh-2531) 5 years ago
bitwarden.conf review and small tweaks (more precise and safe RE) 4 years ago
botsearch-common.conf Update botsearch-common.conf (#1759) 8 years ago
centreon.conf Add Centreon jail 5 years ago
common.conf filter.d/common.conf: closes gh-2650, avoid substitute of default values in related `lt_*` section, `__prefix_line` should be interpolated in definition section (after the config considers all sections that can overwrite it); 5 years ago
counter-strike.conf added possibility to specify more precise default date pattern: 8 years ago
courier-auth.conf Make courier-auth regexp a non-captured group 8 years ago
courier-smtp.conf filter.d/courier-smtp.conf: prefregex extended to consider port in log-message (closes gh-2697) 5 years ago
cyrus-imap.conf filter.d/cyrus-imap.conf: fixed `failregex` - accept entries without login-info resp. hostname before IP address 8 years ago
directadmin.conf added possibility to specify more precise default date pattern: 8 years ago
domino-smtp.conf filter.d/domino-smtp.conf: 6 years ago
dovecot.conf add submission 4 years ago
dropbear.conf Several filters optimized with pre-filtering using new option `prefregex` 8 years ago
drupal-auth.conf Add drupal-auth filter and jail 10 years ago
ejabberd-auth.conf small amend to gh-1850: removed greedy catch-all at end. 7 years ago
exim-common.conf filter.d/exim.conf: cherry-picked from 0.10, match complex time like `D=2m42s` (closes gh-1766) 8 years ago
exim-spam.conf MRG: from 0.9 11 years ago
exim.conf filter.d/exim.conf: failregex extended with SMTP call dropped: too many syntax or protocol errors. 7 years ago
freeswitch.conf filter.d/freeswitch.conf: provide mode parameter, allows to avoid matching of messages like `auth challenge (REGISTER)` (see gh-2163) (currently `extra` as default to be backwards-compatible), see comments in filter how to set it to mode `normal`. 6 years ago
froxlor-auth.conf Several filters optimized with pre-filtering using new option `prefregex` 8 years ago
gitlab.conf New Gitlab jail 5 years ago
grafana.conf no catch-alls, user name and error message stored in ticket 4 years ago
groupoffice.conf ENH: define ignoreregex for all filters explicitly, to avoid warnings (Closes #934) 10 years ago
gssftpd.conf DOC: in filters, put user relevant doc at top, and developer info at bottom, and remove all the repetative blindly copied stuff that appears in the jail man page 11 years ago
guacamole.conf Enhance Guacamole jail 4 years ago
haproxy-http-auth.conf Update haproxy-http-auth.conf 8 years ago
horde.conf MRG: horde filter from master 11 years ago
kerio.conf Merge remote-tracking branch 'remotes/gh-upstream/master' into 0.10 8 years ago
lighttpd-auth.conf regex updated using non-capturing groups 7 years ago
mongodb-auth.conf code review, makes the test cases workable, added dev-notes 8 years ago
monit.conf filter.d/common.conf: closes gh-2650, avoid substitute of default values in related `lt_*` section, `__prefix_line` should be interpolated in definition section (after the config considers all sections that can overwrite it); 5 years ago
murmur.conf filter.d/murmur.conf: fixed detection of failures reading from journal (systemd-backend only): 7 years ago
mysqld-auth.conf filter.d/mysqld-auth.conf: capture user name in filter (can be more strict if user switched, used in action or fail2ban-regex output); 5 years ago
nagios.conf removing the second failregex 11 years ago
named-refused.conf don't need to match identifier exactly (@ is precise enough as prefix), not capturing group; 5 years ago
nginx-botsearch.conf more precise date template handling (WARNING: this commit creates possible incompatibilities): 8 years ago
nginx-http-auth.conf Merge remote-tracking branch 'remotes/gh-upstream/master' into 0.10 7 years ago
nginx-limit-req.conf Merge remote-tracking branch 'master' into 0.10 7 years ago
nsd.conf more precise date template handling (WARNING: this commit creates possible incompatibilities): 8 years ago
openhab.conf added possibility to specify more precise default date pattern: 8 years ago
openwebmail.conf ENH: stronger regex for failregex 11 years ago
oracleims.conf added possibility to specify more precise default date pattern: 8 years ago
pam-generic.conf quick optimization: normalizes pam-generic prefregex (more similar to the same regex within sshd-filter) + datepattern anchored now; 7 years ago
perdition.conf DOC: in filters, put user relevant doc at top, and developer info at bottom, and remove all the repetative blindly copied stuff that appears in the jail man page 11 years ago
php-url-fopen.conf more precise date template handling (WARNING: this commit creates possible incompatibilities): 8 years ago
phpmyadmin-syslog.conf phpmyadmin-syslog: removed excess file, fixed test, updated failregex 7 years ago
portsentry.conf more precise date template handling (WARNING: this commit creates possible incompatibilities): 8 years ago
postfix.conf filter.d/postfix.conf: extended mode ddos and aggressive covering multiple disconnects without auth 5 years ago
proftpd.conf typo 4 years ago
pure-ftpd.conf define journalmatch setting for pure-ftps 9 years ago
qmail.conf DOC: in filters, put user relevant doc at top, and developer info at bottom, and remove all the repetative blindly copied stuff that appears in the jail man page 11 years ago
recidive.conf filter.d/recidive.conf: fixed if logging into systemd-journal (SYSLOG) with daemon name in prefix, gh-2069 7 years ago
roundcube-auth.conf filter.d/roundcube-auth.conf: fixes failregex not working with `X-Real-IP` or/and `X-Forwarded-For` (gh-1303) 8 years ago
screensharingd.conf Removed old svn revision comment 9 years ago
selinux-common.conf added possibility to specify more precise default date pattern: 8 years ago
selinux-ssh.conf DOC: in filters, put user relevant doc at top, and developer info at bottom, and remove all the repetative blindly copied stuff that appears in the jail man page 11 years ago
sendmail-auth.conf amend to 3f04cba9f92a1827d0cb3dcb51e57d9f60900b4a: sendmail-auth has 2 failregex now, so rewritten with prefregex 4 years ago
sendmail-reject.conf fixes gh-2787: allow to match `did not issue MAIL/EXPN/VRFY/ETRN during connection` non-anchored with extra mode (default names may deviate); 4 years ago
sieve.conf Fix sieve filter to use correct option 11 years ago
slapd.conf another variant of regex 9 years ago
softethervpn.conf small tweaks (both 2nd time and facility are optional, avoid catch-all, etc) 4 years ago
sogo-auth.conf Merge branch 'master-0.9' into 0.10 6 years ago
solid-pop3d.conf Fix a few typos 11 years ago
squid.conf more precise date template handling (WARNING: this commit creates possible incompatibilities): 8 years ago
squirrelmail.conf added possibility to specify more precise default date pattern: 8 years ago
sshd.conf filter.d/sshd.conf: mode `ddos` (and `aggressive`) extended with new rule closing flood attack vector, matching: 4 years ago
stunnel.conf ENH: define ignoreregex for all filters explicitly, to avoid warnings (Closes #934) 10 years ago
suhosin.conf suhosin.conf: removed greedy match 8 years ago
tine20.conf more precise date template handling (WARNING: this commit creates possible incompatibilities): 8 years ago
traefik-auth.conf filter.d/traefik-auth.conf: filter extended with parameter mode (`normal`, `ddos`, `aggressive`) to handle the match of username differently: 5 years ago
uwimap-auth.conf DOC: in filters, put user relevant doc at top, and developer info at bottom, and remove all the repetative blindly copied stuff that appears in the jail man page 11 years ago
vsftpd.conf filter.d/vsftpd.conf: optional reason message after FAIL LOGIN, closes #1543 8 years ago
webmin-auth.conf BF: remove duplication definition secion in webmin-auth 11 years ago
wuftpd.conf Add filter variable __pam_auth to allow easier changing of pam auth backend 10 years ago
xinetd-fail.conf Several filters optimized with pre-filtering using new option `prefregex` 8 years ago
znc-adminlog.conf filter.d/znc-adminlog.conf: support logging format of systemd-journal, bypass port after address (optional, removed end-anchor, see gh-2520) 5 years ago
zoneminder.conf small review, prefix replaced with `%(_apache_error_client)s` from apache-common.conf include 7 years ago