From bdbdfab86c207242f62ef4383571232f183c1636 Mon Sep 17 00:00:00 2001 From: qo-op Date: Sun, 31 Jan 2021 22:53:23 +0100 Subject: [PATCH] fail2ban activation with ($DEFCON < 5 ) && ! $isLAN --- zen/ipfs_SWARM_refresh.sh | 10 ++++++---- 1 file changed, 6 insertions(+), 4 deletions(-) diff --git a/zen/ipfs_SWARM_refresh.sh b/zen/ipfs_SWARM_refresh.sh index 9626cf7..bb7a7b3 100755 --- a/zen/ipfs_SWARM_refresh.sh +++ b/zen/ipfs_SWARM_refresh.sh @@ -62,11 +62,13 @@ do echo "!!! NOT MY FRIEND !!! ___________________ # DEFCON : $DEFCON " if [[ ( $DEFCON < 5 ) && ! $isLAN ]] then - fail2ban-client add recidive 2>/dev/null 1>&2 - fail2ban-client start recidive - fail2ban-client set recidive banip $ip + ### IMPORTANT ADD TO /etc/sudoers ### + # $USER ALL=(ALL:ALL) NOPASSWD:/usr/bin/fail2ban-client + sudo fail2ban-client add recidive 2>/dev/null 1>&2 + sudo fail2ban-client start recidive + sudo fail2ban-client set recidive banip $ip # Show ALL banned IP - fail2ban-client status recidive + sudo fail2ban-client status recidive fi echo "INFORM _FAIL2BAN STATUS $ip IN ~/.zen/ipfs_swarm/.$ipfsnodeid/_FAIL2BAN" # INFORM _FAIL2BAN STATUS in ipfs_swarm/.$ipfsnodeid