Author Topic: Fail2Ban: Any thoughts positive or negative on installing this?  (Read 10392 times)

0 Members and 1 Guest are viewing this topic.

Offline
*
Fail2Ban: Any thoughts positive or negative on installing this?
« on: December 10, 2014, 12:18:38 AM »
I have been told that for some of my security options, I should install Fail2Ban on my CWP/Centos 6.6 servers.

Any thoughts or recommendations before I start to tinker with it?

Many thanks!

Offline
*
Re: Fail2Ban: Any thoughts positive or negative on installing this?
« Reply #1 on: December 10, 2014, 02:58:52 AM »
you should enable CSF firewall on your server and then you do not need this 3rdparty.
AntiDDoS Protection (web + mail)
http://centos-webpanel.com/website-ddos-protection-proxy

Join our Development Team and get paid !
http://centos-webpanel.com/develope-modules-for-cwp


Services Monitoring & RBL Monitoring
http://centos-webpanel.com/services-monitor


Do you need Fast and FREE Support included for your CWP linux server?
http://centos-webpanel.com/noc-partner-list
Installation Instructions
http://centos-webpanel.com/installation-instructions
Get Fast Support Here
http://centos-webpanel.com/support-services

Offline
*
Re: Fail2Ban: Any thoughts positive or negative on installing this?
« Reply #2 on: January 21, 2017, 01:43:34 PM »
How Protect Firewall failed logins on http://my.hostname.tld:2030/ and ssh without bind to an fixed ip?
For me not possile cause our local ip change daily.

Offline
*
Re: Fail2Ban: Any thoughts positive or negative on installing this?
« Reply #3 on: February 23, 2017, 07:10:29 PM »
First of all fail2ban is not needed if u use csf+lfd, but ... lfd needs a lot of work to filter as much as fail2ban does.

For example Roundcude... very often a target for hackers/kiddies and not dealth with by LFD

So yes.. its a good idea to use fail2ban for things that LFD does not cover. or configure LFD to cover those via regex-custom.pm
Im developing a toll to automate this as its very gard, where for fail2ban its rather easy

Then @Media Schmiede

U are safe, it does not matter that u use a changing ip address.