linux:fail2ban
差别
这里会显示出您选择的修订版和当前版本之间的差别。
两侧同时换到之前的修订记录前一修订版后一修订版 | 前一修订版 | ||
linux:fail2ban [2016/04/15 22:13] – Fix inotify deb name memory | linux:fail2ban [2023/12/03 10:24] (当前版本) – 外部编辑 127.0.0.1 | ||
---|---|---|---|
行 71: | 行 71: | ||
sudo fail2ban-client status | sudo fail2ban-client status | ||
sudo fail2ban-client status ssh | sudo fail2ban-client status ssh | ||
+ | </ | ||
+ | |||
+ | ===== Usage ===== | ||
+ | |||
+ | ==== Check fail2ban status ==== | ||
+ | |||
+ | fail2ban-client status | ||
+ | fail2ban-client status [jail-name] | ||
+ | |||
+ | ==== Unban ip ==== | ||
+ | |||
+ | fail2ban-client set [jail-name] unbanip [ip] | ||
+ | |||
+ | ==== Test filter rule ==== | ||
+ | |||
+ | fail2ban-regex ' | ||
+ | fail2ban-regex / | ||
+ | |||
+ | ===== Ban ip by specified nginx rule ===== | ||
+ | |||
+ | 新增规则限制 '' | ||
+ | |||
+ | <code ini> | ||
+ | [nginx-sms] | ||
+ | enabled = true | ||
+ | port = http,https | ||
+ | filter = nginx-sms | ||
+ | logpath = / | ||
+ | maxtry = 9 | ||
+ | findtime = 86400 | ||
+ | bantime | ||
+ | </ | ||
+ | |||
+ | <code init / | ||
+ | [Definition] | ||
+ | failregex = ^< | ||
+ | ignoreregex = | ||
</ | </ | ||
linux/fail2ban.1460729638.txt.gz · 最后更改: 2023/12/03 10:24 (外部编辑)