Files
selfhosted/fail2ban/jail.d/00-defaults.local

7 lines
312 B
Plaintext

[DEFAULT]
banaction = iptables-multiport
# Push the rule into DOCKER-USER and cover your ports
action = iptables-multiport[name=nginx, port="80,443,3000", protocol=tcp, chain=DOCKER-USER]
ignoreip = 127.0.0.1/8 ::1 \
172.19.0.0/16 172.20.0.0/16 172.22.0.0/16 \
5.75.153.161 167.235.254.4