diff --git a/Fail2Ban-Setup.md b/Fail2Ban-Setup.md new file mode 100644 index 0000000..372ac34 --- /dev/null +++ b/Fail2Ban-Setup.md @@ -0,0 +1,31 @@ +To use Fail2Ban with radicale change Logging to `INFO` + +Configs for fail2ban + +filter: + +``` +[INCLUDES] +before = common.conf + +[Definition] +failregex = ^.*\sfor\s\'\/\'\sreceived\sfrom\s\'\'.*\n^^.*Failed\slogin\sattempt:\s +ignoreregex = + +[Init] +maxlines = 4 +``` + +jail: +``` +[radicale] +enabled = true +port = 80,443 +filter = radicale +action = iptables-allports[name=radicale] +logpath = /var/log/remotelogs/192.168.50.115/radicale-logins.log +maxretry = 2 +bantime = -1 +ignoreip = 192.168.50.0/24 +findtime = 14400 +```