Package: fail2ban
Version: 0.8.0-4

The ssh and ssh-ddos sections in /etc/fail2ban/jail.conf have "port =
ssh,sftp".  However, secure ftp runs over port 22 like regular ssh.
(Instead of starting an interactive session after authentication, the
sftp client requests the sftp module.)  Port 115 is the Simple File
Transfer Protocol[1], which is marked by the IETF as "historic"[2].

Please consider adjusting the default configuration to only specify
"port = ssh" for these sections.


[1] http://www.ietf.org/rfc/rfc913.txt
[2] ftp://ftp.isi.edu/in-notes/rfc-index.txt

-- 
Paul Collins
Wellington, New Zealand

Dag vijandelijk luchtschip de huismeester is dood


-- 
To UNSUBSCRIBE, email to [EMAIL PROTECTED]
with a subject of "unsubscribe". Trouble? Contact [EMAIL PROTECTED]

Reply via email to