I'll answer my own question. I forgot about xarf-login-attack, which does make use of either logfiles or the systemd backend.
On Thu, 2021-01-28 at 17:13 -0500, Daniel L. Srebnick via Fail2ban- users wrote: > Hello list: > > I am familiar with how to implement a complain action where there is > a > logpath to specify. However, what of a filter that works off the > systemd backend (no logfile)? > > Is there a syntax for the complain action to know to use the systemd > backend rather than the non-existent logpath for that filter? > > The issue at hand, of course, is that the complain email needs to > contain the relevant offending log entries. > > Thanks for any insight. > _______________________________________________ > Fail2ban-users mailing list > Fail2ban-users@lists.sourceforge.net > https://lists.sourceforge.net/lists/listinfo/fail2ban-users
smime.p7s
Description: S/MIME cryptographic signature
_______________________________________________ Fail2ban-users mailing list Fail2ban-users@lists.sourceforge.net https://lists.sourceforge.net/lists/listinfo/fail2ban-users