Linux Security

Steps for Recovering from a UNIX or NT System Compromise

Using fail2ban to ban bots for long periods

Note that restarting or reloading fail2ban clears all banned IP addresses.

Use the /etc/fail2ban/filter.d/recidive.conf filter, configuring fail2ban to monitor its own logs. See for discussion.

