config 1.8 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102
  1. [DEFAULT]
  2. ignoreip = 127.0.0.1 ::1
  3. bantime = 24h
  4. usedns = warn
  5. [sshd]
  6. enabled = true
  7. port = 22
  8. filter = sshd
  9. maxretry = 5
  10. {% if webserver is defined %}
  11. {% if webserver.exts is defined %}
  12. {% if "php" in webserver.exts %}
  13. [php-url-fopen]
  14. enabled = true
  15. port = 80,443,8080
  16. filter = php-url-fopen
  17. logpath = /var/log/apache*/*access.log
  18. {% endif %}
  19. {% endif %}
  20. {% if webserver.serv == "nginx" %}
  21. [nginx-noscript]
  22. enabled = true
  23. port = http,https
  24. filter = nginx-noscript
  25. logpath = /var/log/nginx/access.log
  26. maxretry = 6
  27. [nginx-badbots]
  28. enabled = true
  29. port = http,https
  30. filter = nginx-badbots
  31. logpath = /var/log/nginx/access.log
  32. maxretry = 2
  33. [nginx-nohome]
  34. enabled = true
  35. port = http,https
  36. filter = nginx-nohome
  37. logpath = /var/log/nginx/access.log
  38. maxretry = 2
  39. [nginx-noproxy]
  40. enabled = true
  41. port = http,https
  42. filter = nginx-noproxy
  43. logpath = /var/log/nginx/access.log
  44. maxretry = 2
  45. {% elif webserver.serv == "apache" %}
  46. [apache]
  47. enabled = true
  48. port = 80,443,8080
  49. filter = apache-auth
  50. logpath = /var/log/apache*/*error.log
  51. maxretry = 6
  52. [apache-overflows]
  53. enabled = true
  54. port = 80,443,8080
  55. filter = apache-overflows
  56. logpath = /var/log/apache*/*error.log
  57. maxretry = 2
  58. [apache-badbots]
  59. enabled = true
  60. port = 80,443,8080
  61. filter = apache-badbots
  62. logpath = /var/log/apache*/*error.log
  63. maxretry = 2
  64. [apache-noscript]
  65. enabled = true
  66. port = 80,443
  67. filter = apache-noscript
  68. logpath = /var/log/apache*/*error.log
  69. maxretry = 4
  70. [apache-nohome]
  71. enabled = true
  72. port = 80,443
  73. filter = apache-nohome
  74. logpath = /var/log/apache*/*error.log
  75. maxretry = 2
  76. [apache-botsearch]
  77. enabled = true
  78. port = http,https
  79. filter = apache-botsearch
  80. logpath = /var/log/apache*/*error.log
  81. maxretry = 2
  82. [apache-shellshock]
  83. enabled = true
  84. port = 80,443
  85. filter = apache-shellshock
  86. logpath = /var/log/apache*/*error.log
  87. maxretry = 2
  88. {% endif %}
  89. {% endif %}