You can’t. Fail2ban can only use <HOST>. However, you can make <HOST> match the user ;-) But it’s one or the other, because you only have 1 variable to play with.
Le 20/04/2017 à 15:44, Hochreiter Martin a écrit : > I try it with a separate post: > > I built a filter to extract <HOST> and <USER> out of the postfix SASL logs … > How can I configure fail2ban to count the USER logins (not the IP)? > > Regards > > Martin ------------------------------------------------------------------------------ Check out the vibrant tech community on one of the world's most engaging tech sites, Slashdot.org! http://sdm.link/slashdot _______________________________________________ Fail2ban-users mailing list Fail2ban-users@lists.sourceforge.net https://lists.sourceforge.net/lists/listinfo/fail2ban-users