Vesta Control Panel - Forum

Community Forum

Skip to content

Advanced search
  • Quick links
    • Main site
    • Github repo
    • Google Search
  • FAQ
  • Login
  • Register
  • Board index Main Section General Discussion
  • Search

fail2ban edit

General questions about VestaCP
Post Reply
  • Print view
Advanced search
4 posts • Page 1 of 1
vestacp89
Posts: 83
Joined: Thu Aug 14, 2014 11:04 am

fail2ban edit
  • Quote

Post by vestacp89 » Thu Oct 06, 2016 11:17 am

Hello,

I try scraping my website for see how work vestacp default firewall,
I make 10 000 request per 1sec and just 50% is blocked so 5000 request per sec work fine,
5000 sec per sec is a lot how i can edit this to some less number e.g. 5 request per sec ?
If i add 5 request per sec this will block some my regular users on page if make more then 5 request per sec?

Thank you.
Top

vestacp89
Posts: 83
Joined: Thu Aug 14, 2014 11:04 am

Re: fail2ban edit
  • Quote

Post by vestacp89 » Fri Oct 07, 2016 9:10 am

XoXiLhJ0mn wrote:Hi,

I use free firewall from ConfigServer, called csf.

Thats the best you will ever find.

On my server, fail2ban is turned off.

The csf handles and does all the work in an excellent manner, precisely what you are trying to achieve with 5000 requests. Further, it will offer you many more functions and a vast area of protection on many important security areas.

I advice you to turn off fail2ban and use csf. Of course, it will ban the users that fails to login,. But it will do much more.
Can you please tell me which all commands i need add in ubuntu terminal for stop fail2ban and turn on csf,
also i need edit csf or default settings is enough?

Thank you.
Top

KhaoMaNee
Posts: 12
Joined: Thu Feb 26, 2015 5:58 am

Re: fail2ban edit
  • Quote

Post by KhaoMaNee » Thu Oct 13, 2016 8:30 am

vestacp89 wrote:Hello,

I try scraping my website for see how work vestacp default firewall,
I make 10 000 request per 1sec and just 50% is blocked so 5000 request per sec work fine,
5000 sec per sec is a lot how i can edit this to some less number e.g. 5 request per sec ?
If i add 5 request per sec this will block some my regular users on page if make more then 5 request per sec?

Thank you.
Are you trying to block IPs that are trying to snoop around your server files (maybe to execute something) or some type of flooding? What is the fail2ban filter you're using for this purpose?

not exactly sure why fail2ban would block the regular users.
Top

Syeef
Posts: 52
Joined: Tue May 03, 2016 11:35 pm

Re: fail2ban edit
  • Quote

Post by Syeef » Thu Oct 13, 2016 1:44 pm

XoXiLhJ0mn wrote:Csf is specifically designed for advanced features to even coordinate many additional services and bring them under protection under one roof. The same csf script will count failure in login attempts by an IP and block it.

If the same IP does some more non-sense with any other service, it would be able to block it too. It could also block the same IP attempt of malicious with x minutes or hours.

Which means a malicious attempt on SMTP could be counted against an another malicious attempt of IMAPS or even http, which could eventually be blocked for the entire C octet of that IP. It could also provide flood protection and DoS, etc.

Thats what you wanna achieve, right? Default IP tables is a wonderful piece of garbage for this requirement here, which should/could be turned off upon csf being on.
^ Csf sounds wonderful from what you said... do you recommend installing this? i currently have iptables + fail2ban.

also if you could point me to some guide how to install that and un-install my current iptables + fail2ban... that would be helpful. I am running CentOS 6.7 x64.
Top


Post Reply
  • Print view

4 posts • Page 1 of 1

Return to “General Discussion”



  • Board index
  • All times are UTC
  • Delete all board cookies
  • The team
Powered by phpBB® Forum Software © phpBB Limited
*Original Author: Brad Veryard
*Updated to 3.2 by MannixMD
 

 

cron

Login  •  Register

I forgot my password