Skip to content

Notes on some fail2ban patterns to watch apache logs for suspicious activity

Notifications You must be signed in to change notification settings

dman-coders/fail2ban-webexploits

Folders and files

NameName
Last commit message
Last commit date

Latest commit

 

History

5 Commits
 
 
 
 

Repository files navigation

fail2ban-webexploits

Notes on some fail2ban patterns to watch apache logs for suspicious activity.

Install in the directory path indicated by the folder structure.

With recent versions of fail2ban, these files can just be added alongsite your existing settings without conflict. Older ones may require you to merge the jail.d settings with a jail.local file

NOTE: I am using scans of apace ACCESS logs, and may be using extended log format - thus the regexps may need to differ. This is unpredictable, and probably why there are so few shared examples out there. You may be expected to modify these to your own needs.

.dan. 2014-10

Credits

Testing

See the fail2ban-regex utility.

About

Notes on some fail2ban patterns to watch apache logs for suspicious activity

Resources

Stars

Watchers

Forks

Releases

No releases published

Packages

No packages published