Sergey G. Brester
Sergey G. Brester
Thx for the PR! I'll try to review it soon and/or merge it with my experimental branch using different approach changing ban factor related to geo-database (I used sqlite rtree...
@Neustradamus please stop to ask on every PR "any news about"... What're you trying to achieve? It looks simply like a flood, and especially my GH notifications area stuffers from...
I never understand the necessity for filters like this (don't like the idea to ban only by the agent, and then even as a blacklist). Let alone it is easy...
> are you planning to make further improvements, for example as discussed in https://github.com/fail2ban/fail2ban/issues/1950#issuecomment-1270046007? This is not what can be improved in fail2ban... More or less this is individual solution.
> Would you please merge the PR, or there is something else we should do? Well, possibly one could update the RE (in order to make it a bit less...
Regarding the last change (REs) - it looks good, but... I'm still unsure about this PR as is: there are the lot of new bots now and therefore: - hardly...
Hi, thanks for the PR. Can you clarify please the field of application for that (necessity to report IP address to Crowdsec)... Are you using two IPS systems together? Why?...
> Isn't this what e.g. the mail action does? Not all mails actions, you mean `mail-whois` action surely, but... Yes. And that is why it is not recommended to use...
> Maybe this is a way to go for this agent? Dunno. Alternatively one can do the whois lookup as an option. > The sharing is the part fail2ban does...
> I'll suggest to split this into two agents: one simple for usage without whois plus a second one with whois (similar to mail agents). No. I don't like it...