From 34d463ffe0f2558f7cc0acf7c450f7c36fffe68c Mon Sep 17 00:00:00 2001 From: Giulio De Pasquale Date: Sun, 19 Dec 2021 13:24:33 +0100 Subject: [PATCH] Use defaults --- hosts/architect/fail2ban.nix | 18 +----------------- 1 file changed, 1 insertion(+), 17 deletions(-) diff --git a/hosts/architect/fail2ban.nix b/hosts/architect/fail2ban.nix index 540a1e0..2dfa35c 100644 --- a/hosts/architect/fail2ban.nix +++ b/hosts/architect/fail2ban.nix @@ -3,23 +3,7 @@ enable = true; package = pkgs.fail2ban; packageFirewall = pkgs.nftables; - banaction = "nftables-multiport"; - banaction-allports = "nftables-allport"; bantime-increment.enable = true; - # ignoreIP = [ "10.0.0.0/24" "10.3.0.0/24" ]; - daemonConfig = '' - [Definition] - loglevel = INFO - logtarget = SYSLOG - socket = /run/fail2ban/fail2ban.sock - pidfile = /run/fail2ban/fail2ban.pid - dbfile = /var/lib/fail2ban/fail2ban.sqlite3 - ''; - jails = { - sshd = '' - maxretry = 3 - mode = aggressive - ''; - }; + ignoreIP = [ "10.0.0.0/24" "10.3.0.0/24" ]; }; }