Bouaaaaaaaaaaaaaaaaa !
bon ben tout semble fonctionner correctement !
sshd : ok mais je comprend pas pourquoi "ListenAddress 192.168.1.2" ne fonctionne pas !
fail2ban : mon pote du 88.33.202.155 a bien été banni !
[root@mandriva ~]# fail2ban-regex /var/log/auth.log /etc/fail2ban/filter.d/sshd.conf
Running tests
=============
Use regex file : /etc/fail2ban/filter.d/sshd.conf
Use log file : /var/log/auth.log
Results
=======
Failregex:
[1] Authentication failure for .* from <HOST>
[2] Failed [-/\w+]+ for .* from <HOST>
[3] ROOT LOGIN REFUSED .* FROM <HOST>
[4] [iI](?:llegal|nvalid) user .* from <HOST>
Number of matches:
[1] 0 match(es)
[2] 0 match(es)
[3] 0 match(es)
[4] 31 match(es)
Addresses found:
[1]
[2]
[3]
[4]
88.33.202.155 (Sun May 11 21:04:24 2008)
88.33.202.155 (Sun May 11 21:04:36 2008)
88.33.202.155 (Sun May 11 21:04:42 2008)
88.33.202.155 (Sun May 11 21:04:52 2008)
88.33.202.155 (Sun May 11 21:04:58 2008)
88.33.202.155 (Sun May 11 21:05:04 2008)
88.33.202.155 (Sun May 11 21:05:11 2008)
88.33.202.155 (Sun May 11 21:05:49 2008)
88.33.202.155 (Sun May 11 21:06:02 2008)
88.33.202.155 (Sun May 11 21:06:08 2008)
88.33.202.155 (Sun May 11 21:06:14 2008)
88.33.202.155 (Sun May 11 21:09:01 2008)
88.33.202.155 (Sun May 11 21:09:14 2008)
88.33.202.155 (Sun May 11 21:09:20 2008)
88.33.202.155 (Sun May 11 21:09:26 2008)
88.33.202.155 (Sun May 11 21:09:33 2008)
88.33.202.155 (Sun May 11 21:09:39 2008)
88.33.202.155 (Sun May 11 21:09:45 2008)
88.33.202.155 (Sun May 11 21:09:51 2008)
88.33.202.155 (Sun May 11 21:09:58 2008)
88.33.202.155 (Sun May 11 21:10:04 2008)
88.33.202.155 (Sun May 11 21:10:10 2008)
88.33.202.155 (Sun May 11 21:10:16 2008)
88.33.202.155 (Sun May 11 21:10:26 2008)
88.33.202.155 (Sun May 11 21:10:32 2008)
88.33.202.155 (Sun May 11 21:10:38 2008)
88.33.202.155 (Sun May 11 21:10:45 2008)
88.33.202.155 (Sun May 11 21:10:51 2008)
88.33.202.155 (Sun May 11 21:10:57 2008)
88.33.202.155 (Sun May 11 21:11:03 2008)
88.33.202.155 (Sun May 11 21:11:10 2008)
Date template hits:
31 hit: Month Day Hour:Minute:Second
0 hit: Weekday Month Day Hour:Minute:Second Year
0 hit: Year/Month/Day Hour:Minute:Second
0 hit: Day/Month/Year:Hour:Minute:Second
0 hit: Year-Month-Day Hour:Minute:Second
0 hit: TAI64N
0 hit: Epoch
Success, the total number of match is 31
However, look at the above section 'Running tests' which could contain important
information.
[root@mandriva ~]#
source : http://www.fail2ban.org/wiki/index.php/MANUAL_0_8#Testing
un détail omis : j'utilise postfix !
FIN !
--
Un Linux, c'est bien ...........plein de Linux, c'est mieux !
Debian lenny // Fedora 2.6.24.5-85.fc8 // Gentoo 2.6.24-gentoo-r7 // Mandriva 2007.1 Spring

