Reply To: RE: fail2ban not banning

VitalPBX Community Support General Discussion fail2ban not banning Reply To: RE: fail2ban not banning

    Up
    0
    Down

    VitalPBX comes by default with a list of most common VoIP attackers, that’s why you see 46,000 blocked IP addresses.

    About why you don’t see the banned IP on the IP tables, is because we use IP sets to block attackers. 

    Chain vpbx_fail2ban (1 references)
    target prot opt source destination
    REJECT all -- anywhere anywhere match-set fail2ban-apache-noscript src reject-with icmp-port-unreachable
    REJECT all -- anywhere anywhere match-set fail2ban-sshd src reject-with icmp-port-unreachable
    REJECT all -- anywhere anywhere match-set fail2ban-vitalpbx-gui src reject-with icmp-port-unreachable
    REJECT all -- anywhere anywhere match-set fail2ban-asterisk-vpbx src reject-with icmp-port-unreachable
    REJECT all -- anywhere anywhere match-set fail2ban-apache-auth src reject-with icmp-port-unreachable

    So, if you want to see the blocked IP addresses you must use the following command:

    ipset list fail2ban-sshd
    0