top | item 23189862

(no title)

bcrack | 5 years ago

Fail2ban [0] bans ip addresses based on failed login attempts (works for more than ssh), minus the isolation layer.

[0]: https://www.fail2ban.org/wiki/index.php/Main_Page

discuss

order

encom|5 years ago

fail2ban should be avoided. It does not support IPv6, so should be considered legacy software.

EDIT: Source: https://github.com/fail2ban/fail2ban/issues/1123

It appears they have moved forward a little in supporting IPv6, but it's still incomplete. It's unacceptable to not support it fully in 2020.

tinus_hn|5 years ago

With IPv6 every user gets an IPv4 internet worth of addresses for himself which makes fail2ban useless.

jbverschoor|5 years ago

it does more than just scanning iptables logs..