Răsfoiți Sursa

Update jail.local

Set the fail2ban to block only web interface for failed authentication attempts.
FusionPBX 9 ani în urmă
părinte
comite
249b9d74a6
1 a modificat fișierele cu 2 adăugiri și 2 ștergeri
  1. 2 2
      debian/resources/fail2ban/jail.local

+ 2 - 2
debian/resources/fail2ban/jail.local

@@ -38,9 +38,9 @@ port     = 80,443
 protocol = tcp
 protocol = tcp
 filter   = fusionpbx
 filter   = fusionpbx
 logpath  = /var/log/auth.log
 logpath  = /var/log/auth.log
-action   = iptables-allports[name=fusionpbx, protocol=all]
+action   = iptables-multiport[name=fusionpbx, port="http,https", protocol=tcp]
 #          sendmail-whois[name=fusionpbx, dest=root, [email protected]] #no smtp server installed
 #          sendmail-whois[name=fusionpbx, dest=root, [email protected]] #no smtp server installed
-maxretry = 5
+maxretry = 10
 findtime = 600
 findtime = 600
 bantime  = 600	
 bantime  = 600