Hi Tom!

Your suggestion worked!

Is there a reason why the action didn't just pickup <logpath> from jail
like it does for <ip>? Or maybe that's not how that works? (novice to
fail2ban)

Thanks again for your help!
Bond

On 11/03/2015 12:55 AM, Tom Hendrikx wrote:
> Hi,
>
> You should duplicate the logpath setting as a parameter to the
> sendmail-whois-lines. The default setting for the logpath in
> sendmail-whois-lines is /dev/null.
>
> Try:
>
> action = iptables-multiport[name=apache-noscanners,port="80,443"]
>          sendmail-whois-lines[name=apache-noscanners,
> dest=i...@domain.com, sender=fail2...@domain.com, sendername="Fail2Ban",
> logpath=/var/log/httpd/*access_log]
>
> Regards,
> Tom
>
>
>


------------------------------------------------------------------------------
_______________________________________________
Fail2ban-users mailing list
Fail2ban-users@lists.sourceforge.net
https://lists.sourceforge.net/lists/listinfo/fail2ban-users

Reply via email to