Browse Source

added Apache2 Digest Auth filter (Copyright Emre Sevinç)

Oliver Ladner 7 years ago
parent
commit
b09f74116b
1 changed files with 21 additions and 0 deletions
  1. 21 0
      apache-digest.conf

+ 21 - 0
apache-digest.conf

@@ -0,0 +1,21 @@
+# Fail2Ban configuration file
+#
+# Author: Emre Sevinç
+
+[Definition]
+
+# Option:  failregex
+# Notes.:  regex to match Digest Auth requests for unknown users and failed logins
+#          host must be matched by a group named "host". The tag "<HOST>" can
+#          be used for standard IP/hostname matching and is only an alias for
+#          (?:::f{4,6}:)?(?P<host>[\w\-.^_]+)
+# Values:  TEXT
+#
+
+failregex = [[]client <HOST>[]] (Digest: )?user .* (authentication failure|not found|password mismatch)
+
+# Option:  ignoreregex
+# Notes.:  regex to ignore. If this regex matches, the line is ignored.
+# Values:  TEXT
+#
+ignoreregex =