diff --git a/conf/fail2ban/jails.conf b/conf/fail2ban/jails.conf index c1514b45..4078e20f 100644 --- a/conf/fail2ban/jails.conf +++ b/conf/fail2ban/jails.conf @@ -11,59 +11,68 @@ ignoreip = 127.0.0.1/8 PUBLIC_IP ::1 PUBLIC_IPV6 enabled = true filter = dovecotimap logpath = /var/log/mail.log -findtime = 30 -maxretry = 20 +findtime = 24h +bantime = 24h +maxretry = 10 [miab-management] enabled = true filter = miab-management-daemon port = http,https logpath = /var/log/syslog -maxretry = 20 -findtime = 30 +findtime = 24h +bantime = 24h +maxretry = 10 [miab-munin] enabled = true port = http,https filter = miab-munin logpath = /var/log/nginx/access.log -maxretry = 20 -findtime = 30 +findtime = 24h +bantime = 24h +maxretry = 10 [miab-owncloud] enabled = true port = http,https filter = miab-owncloud logpath = STORAGE_ROOT/owncloud/nextcloud.log -maxretry = 20 -findtime = 120 +findtime = 24h +bantime = 24h +maxretry = 10 [miab-postfix465] enabled = true port = 465 filter = miab-postfix-submission logpath = /var/log/mail.log -maxretry = 20 -findtime = 30 +findtime = 24h +bantime = 24h +maxretry = 10 [miab-postfix587] enabled = true port = 587 filter = miab-postfix-submission logpath = /var/log/mail.log -maxretry = 20 -findtime = 30 +findtime = 24h +bantime = 24h +maxretry = 10 [miab-roundcube] enabled = true port = http,https filter = miab-roundcube logpath = /var/log/roundcubemail/errors.log -maxretry = 20 -findtime = 30 +findtime = 24h +bantime = 24h +maxretry = 10 [recidive] enabled = true +findtime = 24h +bantime = 24h maxretry = 10 action = iptables-allports[name=recidive] # In the recidive section of jail.conf the action contains: @@ -79,8 +88,12 @@ action = iptables-allports[name=recidive] [postfix-sasl] enabled = true +findtime = 24h +bantime = 24h +maxretry = 10 [sshd] enabled = true -maxretry = 7 -bantime = 3600 +findtime = 24h +bantime = 24h +maxretry = 10