| Index: modules/fail2ban/templates/jail.erb |
| =================================================================== |
| new file mode 100644 |
| --- /dev/null |
| +++ b/modules/fail2ban/templates/jail.erb |
| @@ -0,0 +1,12 @@ |
| +<% @jail_config.each do |name, config| -%> |
| +<% if !config['logpath'].empty? -%> |
| +[<%= name %>] |
| + |
| +enabled = <%= config['enabled'] ||= true %> |
| +port = <%= config['port'] ||= 'all' %> |
|
f.nicolaisen
2016/11/25 16:23:30
'all' is not a valid port range for iptables, ref
f.lopez
2016/11/25 17:41:10
Well, according to the examples provided by fail2b
|
| +filter = <%= name %> |
| +logpath = <%= config['logpath'] %> |
| +maxretry = <%= config['maxretry'] ||= 6 %> |
| +bantime = <%= config['bantime']||= 3600 %> |
| +<% end -%> |
| +<% end -%> |