Hello

Could you please try to have it merged upstream ?

thanks

Cheers,
S

Le 23/02/2021 à 16:15, Mike Gabriel a écrit :
Package: fail2ban
Severity: whislist
Tags: patch

Hi,

today I worked on a fail2ban filter rule that is able to filter out log lines from scanlogd. The scanlogd daemon is a port scan detector.

This is my /etc/fail2ban/filter.d/scanlogd.conf file:

```
# Fail2Ban filter for port scans detected by scanlogd

[Definition]

failregex = scanlogd:\ <HOST>\ to\ .*\ ports\ .*

ignoreregex =

# Author: Mike Gabriel <mike.gabr...@das-netzwerkteam.de>
```

Hope, this is helpful.

Mike



Reply via email to