Same here. Works most of the time, has been working in the past, but recently the whois call returns an error, which causes the “missing whois program” result. This line in mail-whois.conf is the trigger. If the whois call returns anything but 0 then F2B will print the statement: `whois <ip> || echo missing whois program`\n
It seems to be caused by a network error. When run manually, this is the result: [root@host] # whois 97.64.242.18 [Querying whois.arin.net] [Redirected to rwhois.mediacomcc.com:4321] [Querying rwhois.mediacomcc.com] [Unable to connect to remote host] [root@host] #] echo $? 1 So the execution of whois results in $?=1, thus the OR condition above prints the ‘missing whois program’ response.
------------------------------------------------------------------------------
_______________________________________________ Fail2ban-users mailing list [email protected] https://lists.sourceforge.net/lists/listinfo/fail2ban-users
