Hi Tom! Your suggestion worked!
Is there a reason why the action didn't just pickup <logpath> from jail like it does for <ip>? Or maybe that's not how that works? (novice to fail2ban) Thanks again for your help! Bond On 11/03/2015 12:55 AM, Tom Hendrikx wrote: > Hi, > > You should duplicate the logpath setting as a parameter to the > sendmail-whois-lines. The default setting for the logpath in > sendmail-whois-lines is /dev/null. > > Try: > > action = iptables-multiport[name=apache-noscanners,port="80,443"] > sendmail-whois-lines[name=apache-noscanners, > dest=i...@domain.com, sender=fail2...@domain.com, sendername="Fail2Ban", > logpath=/var/log/httpd/*access_log] > > Regards, > Tom > > > ------------------------------------------------------------------------------ _______________________________________________ Fail2ban-users mailing list Fail2ban-users@lists.sourceforge.net https://lists.sourceforge.net/lists/listinfo/fail2ban-users