Use defaults

This commit is contained in:
Giulio De Pasquale 2021-12-19 13:24:33 +01:00
parent c01239c99d
commit 34d463ffe0

View File

@ -3,23 +3,7 @@
enable = true;
package = pkgs.fail2ban;
packageFirewall = pkgs.nftables;
banaction = "nftables-multiport";
banaction-allports = "nftables-allport";
bantime-increment.enable = true;
# ignoreIP = [ "10.0.0.0/24" "10.3.0.0/24" ];
daemonConfig = ''
[Definition]
loglevel = INFO
logtarget = SYSLOG
socket = /run/fail2ban/fail2ban.sock
pidfile = /run/fail2ban/fail2ban.pid
dbfile = /var/lib/fail2ban/fail2ban.sqlite3
'';
jails = {
sshd = ''
maxretry = 3
mode = aggressive
'';
};
ignoreIP = [ "10.0.0.0/24" "10.3.0.0/24" ];
};
}