# Fail2Ban configuration file # # Author: Nick Munger # Modified by: Cyril Jaquier # # $Revision: 658 $ # [Definition] # Option: actionstart # Notes.: command executed once at the start of Fail2Ban. # Values: CMD # actionstart = # Option: actionstop # Notes.: command executed once at the end of Fail2Ban # Values: CMD # actionstop = # Option: actioncheck # Notes.: command executed once before each actionban command # Values: CMD # actioncheck = # Option: actionban # Notes.: command executed when banning an IP. Take care that the # command is executed with Fail2Ban user rights. # Tags: <ip> IP address # <failures> number of failures # <time> unix timestamp of the ban time # Values: CMD # actionban = ipfw add deny tcp from <ip> to <localhost> <port> # Option: actionunban # Notes.: command executed when unbanning an IP. Take care that the # command is executed with Fail2Ban user rights. # Tags: <ip> IP address # <failures> number of failures # <time> unix timestamp of the ban time # Values: CMD # actionunban = ipfw delete `ipfw list | grep -i <ip> | awk '{print $1;}'` [Init] # Option: port # Notes.: specifies port to monitor # Values: [ NUM | STRING ] # port = ssh # Option: localhost # Notes.: the local IP address of the network interface # Values: IP # localhost = 127.0.0.1