authfail is a tool for adding IP addresses to an ACL when entities from those addresses attempt to log into a system, but cause authentication failures in auth.log. It reads data from auth.log in real time and adds the IP into netfilter with a DROP/REJECT policy.
| Tags | Security Logging Systems Administration |
|---|---|
| Licenses | GPL |
| Operating Systems | POSIX |
| Implementation | Perl |
Recent releases


Changes: The Setup.pl file was modified to not notify private RFC 1918 networks during the setup process.


Changes: Private networks from RFC 1918 are not notified.


Changes: Whois lookup and email notifications were implemented.


Changes: A modification was made to the regexp feature. The debian/authfail.init script was modified to prevent running another authfail daemon if one is already running.


Changes: IPv6 support was enabled. If iptables can't rebuild netfilter, the program doesn't die, but only logs information.
A complete management solution for animal shelters and clinics.
- All comments
Recent commentsImportant:make this changes for fedora core
replace from line 70:
sub update_iptables{
$ip_d = shift;
$ipd= substr($ip_d,7);
.
.
.
Work fine!
Great Software
You can resolve a seiruos security problem, and reduce the incoming traffic.
Good!