Instantly share code, notes, and snippets.

Embed
What would you like to do?
Fail2Ban DROP instead REJECT
#Depending on version one of the following files must exist
root@host:/ nano /etc/fail2ban/action.d/iptables-blocktype.conf
or
root@host:/ nano /etc/fail2ban/action.d/iptables-common.conf
comment the line
#blocktype = REJECT --reject-with icmp-port-unreachable
create the line
blocktype = DROP
@radjah

This comment has been minimized.

Copy link

radjah commented Feb 8, 2019

Write it to iptables-common.local

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment