authfail

authfail is a tool for adding IP addresses to an ACL when entities from those addresses attempt to log into a system, but cause authentication failures in auth.log. It reads data from auth.log in real time and adds the IP into netfilter with a DROP/REJECT policy.

Tags Security Logging Systems Administration
Licenses GPL
Operating Systems POSIX
Implementation Perl

Tweet this project Short link

Rss Recent releases

  • Rrelease-mid
  •  21 Aug 2007 02:08
  • Rrelease-after

Changes: The Setup.pl file was modified to not notify private RFC 1918 networks during the setup process.

  • Rrelease-mid
  •  05 May 2007 15:52
  • Rrelease-after

Changes: Private networks from RFC 1918 are not notified.

  • Rrelease-mid
  •  11 Oct 2005 06:17
  • Rrelease-after

Changes: Whois lookup and email notifications were implemented.

  • Rrelease-mid
  •  13 Jun 2005 22:03
  • Rrelease-after

Changes: A modification was made to the regexp feature. The debian/authfail.init script was modified to prevent running another authfail daemon if one is already running.

  • Rrelease-mid
  •  04 Apr 2005 07:38
  • Rrelease-after

Changes: IPv6 support was enabled. If iptables can't rebuild netfilter, the program doesn't die, but only logs information.

Rss Recent comments

Rcomment-before 23 May 2005 06:51 Rcomment-trans ottacom Rcomment-after

Important:make this changes for fedora core
replace from line 70:

sub update_iptables{

$ip_d = shift;

$ipd= substr($ip_d,7);

.

.

.

Work fine!

Rcomment-before 19 May 2005 09:46 Rcomment-trans ottacom Rcomment-after

Great Software
You can resolve a seiruos security problem, and reduce the incoming traffic.

Good!

16e41e452461ccc4717f6003bd5bd0c4_thumb

Project Spotlight

TclUP

An FTP client in Tcl/Tk.

50606b47c7a05c5b08110448b438e844_thumb

Project Spotlight

Gallery

A slick Web-based photo album written using PHP.