From c4fa84b966baa577b3195d43cd886243fa367d04 Mon Sep 17 00:00:00 2001 From: KiekerJan Date: Sun, 29 Aug 2021 22:47:29 +0200 Subject: [PATCH] tuning fail2ban --- conf/fail2ban/filter.d/nginx-badrequests.conf | 4 +--- conf/fail2ban/jail.d/badrequests.conf | 1 - 2 files changed, 1 insertion(+), 4 deletions(-) diff --git a/conf/fail2ban/filter.d/nginx-badrequests.conf b/conf/fail2ban/filter.d/nginx-badrequests.conf index 5ba83405..0265699d 100644 --- a/conf/fail2ban/filter.d/nginx-badrequests.conf +++ b/conf/fail2ban/filter.d/nginx-badrequests.conf @@ -1,8 +1,6 @@ # Ban requests for non-existing or not-allowed resources -# Ban requests for 40x results [Definition] -# first regex for error.log, second for access.log +# regex for nginx error.log failregex = ^.* \[error\] .*2: No such file or directory.*client: .*$ - ^ - .*"(GET|POST|HEAD).*HTTP.*" (400|401|403|404) .*$ ignoreregex = ^.*(robots.txt|favicon.ico).*$ \ No newline at end of file diff --git a/conf/fail2ban/jail.d/badrequests.conf b/conf/fail2ban/jail.d/badrequests.conf index d80e527c..7fd87e72 100644 --- a/conf/fail2ban/jail.d/badrequests.conf +++ b/conf/fail2ban/jail.d/badrequests.conf @@ -8,7 +8,6 @@ enabled = true port = http,https filter = nginx-badrequests logpath = /var/log/nginx/error.log - /var/log/nginx/access.log maxretry = 8 findtime = 15m bantime = 15m