2016-06-02 23:22:03 +00:00
|
|
|
[DEFAULT]
|
|
|
|
|
|
|
|
# "bantime" is the number of seconds that a host is banned.
|
2023-04-16 20:17:58 +00:00
|
|
|
bantime = 1w
|
2016-06-02 23:22:03 +00:00
|
|
|
|
|
|
|
# A host is banned if it has generated "maxretry" during the last "findtime"
|
|
|
|
# seconds.
|
2023-04-16 20:17:58 +00:00
|
|
|
findtime = 1w
|
2016-06-02 23:22:03 +00:00
|
|
|
|
|
|
|
# "maxretry" is the number of failures before a host get banned.
|
2023-05-01 13:00:35 +00:00
|
|
|
maxretry = 6
|
2021-04-18 10:55:43 +00:00
|
|
|
|
2021-04-20 06:50:24 +00:00
|
|
|
# "ignoreip" can be a list of IP addresses, CIDR masks or DNS hosts. Fail2ban
|
|
|
|
# will not ban a host which matches an address in this list. Several addresses
|
|
|
|
# can be defined using space (and/or comma) separator.
|
2022-04-19 08:44:51 +00:00
|
|
|
ignoreip = 127.0.0.1/8
|
2021-04-20 06:50:24 +00:00
|
|
|
|
2022-04-19 08:44:51 +00:00
|
|
|
# default ban action
|
|
|
|
# nftables-multiport: block IP only on affected port
|
|
|
|
# nftables-allports: block IP on all ports
|
|
|
|
banaction = nftables-allports
|
|
|
|
|
|
|
|
[dovecot]
|
|
|
|
enabled = true
|
|
|
|
|
|
|
|
[postfix]
|
|
|
|
enabled = true
|
2023-05-01 13:00:35 +00:00
|
|
|
# For a reference on why this mode was chose, see
|
|
|
|
# https://github.com/docker-mailserver/docker-mailserver/issues/3256#issuecomment-1511188760
|
|
|
|
mode = extra
|
2022-04-19 08:44:51 +00:00
|
|
|
|
|
|
|
[postfix-sasl]
|
|
|
|
enabled = true
|
|
|
|
|
|
|
|
# This jail is used for manual bans.
|
|
|
|
# To ban an IP address use: setup.sh fail2ban ban <IP>
|
|
|
|
[custom]
|
|
|
|
enabled = true
|
|
|
|
bantime = 180d
|
|
|
|
port = smtp,pop3,pop3s,imap,imaps,submission,submissions,sieve
|