[sslh] fail2ban addition

Evert Mouw post at evert.net
Fri Mar 28 08:34:09 CET 2014


O, you also need to add to jail.conf:

# sslh-ssh
[sslh-ssh]
enabled = true
filter = sslh-ssh
action = iptables-multiport[name=sslh,port="443"]
logpath = /var/log/messages
maxretry = 5

note that I now have used "sslh-ssh.conf" as filename for the filter
(the filename in the previous mail was "sslh-ss**l**.conf")

For me it just works (tested with an outside ssh account).

I have Scientific Linux 6.5 (a RHEL derivative) with SELinux enabled,
with sslh-fork 1.15.

regards
Evert




More information about the sslh mailing list