← Tüm kılavuzlar
Fail2ban
Fail2ban watches service log files for repeated authentication failures and automatically bans offending IPs via firewall rules, using per-service 'jails' you enable in jail.local.
Bu kılavuz, yukarıda bağlantısı verilen Fail2ban kendi resmi belgelerinden derlenmiştir — dağıtım ve proje sürümleri zamanla değiştiğinden, bu komutları bir üretim sunucusunda çalıştırmadan önce tam paket/sürüm adlarını her zaman orada kontrol edin.
1Install the package
Fail2ban is already packaged for Debian/Ubuntu, which is the officially recommended way to install it rather than building from source.
sudo apt updatesudo apt install fail2ban2Create a local jail configuration
jail.conf is overwritten on updates — a jail.local override is the documented way to keep customizations safe.
sudo cp /etc/fail2ban/jail.conf /etc/fail2ban/jail.localEdit jail.local to enable jails (e.g. [sshd]) and adjust bantime/findtime/maxretry.
3Enable and start the service
sudo systemctl enable --now fail2bansudo fail2ban-client status