Linux Agent
One static binary that keeps the community blacklist in the kernel firewall of a Linux server, finds the attackers in the logs that server already writes, reports them and blocks them locally. Start with the overview, install with one command, and come back here for every key, every rule and every command.
In this section
What the Linux Agent does, and the quick install
What the agent does, what a host needs, the quick install, the first hour, and the release notes.
Installing the Linux Agent, attended and unattended
The terms of use, the checks, every question and what an Enter answers, the variables and flags of a rollout, an install by hand.
Ansible, cloud-init, control panels, mail and database hosts
A rollout with Ansible or cloud-init, a golden image, control panels, a mail or database host, LXC containers and cloud firewalls.
Every key of config.yaml, thresholds and limits
Every key of config.yaml with its default and range, the thresholds, the ban ladder, the mail, and when a change takes effect.
Source types, what leaves the machine, and rule files
The fourteen source types, adding a log the installer missed, what leaves the machine, and the rule files, including your own.
The feed in the kernel and the bans this host makes itself
The two kinds of set, how a local ban begins and ends, the escalation, the chain in the kernel, and lifting a ban.
Commands, exit codes, monitoring and troubleshooting
Commands and exit codes, the units, monitoring, test in place of fail2ban-regex, and the troubleshooting table.
Zabbix, Nagios, Icinga, Checkmk and Prometheus
status --json, the sudo rule, a Zabbix template, and checks for Nagios, Icinga, Checkmk and Prometheus.
A licence per server, the report budget, and what runs without one
A licence per server, how it is assigned and released, the report budget, and what keeps running without one.
Moving a host from fail2ban to the agent, and back
First check what owns the firewall objects, run both for a while, switch fail2ban off for good, and the way back.
Explore more
Last updated: · Maintained by the ReportedIP team
Security Focused
GDPR Compliant
Made in Germany