snappymail/fail2ban
2020-07-29 11:29:59 +02:00
..
filter.d Added Fail2ban instructions 2020-07-29 11:29:59 +02:00
jail.d Added Fail2ban instructions 2020-07-29 11:29:59 +02:00
README.md Added Fail2ban instructions 2020-07-29 11:29:59 +02:00

Fail2ban Instructions

This modified version of RainLoop logs to the system (when syslog works in PHP).

If you use other ports then http, https & 2096, modify them in /filter.d/*.conf

Systemd journal PHP-FPM

Upload the following to /etc/fail2ban/*

  • /filter.d/rainloop-fpm-journal.conf
  • /jail.d/rainloop-fpm-journal.conf

Modify your /etc/fail2ban/jail.local with:

[rainloop-fpm-journal]
enabled = true

Modify /PATH-TO-RAINLOOP-DATA/data/default/configs/application.ini

[logs]
auth_logging = On
auth_logging_filename = "fail2ban/auth-fail.log"
auth_logging_format = "[{date:Y-m-d H:i:s T}] Auth failed: ip={request:ip} user={imap:login} host={imap:host} port={imap:port}"

Modify the path in /jail.d/rainloop-log.conf

Upload the following to /etc/fail2ban/*

  • /filter.d/rainloop-log.conf
  • /jail.d/rainloop-log.conf

Modify your /etc/fail2ban/jail.local with:

[rainloop-log]
enabled = true