Package: fail2ban
Version: 0.5.4-5
Severity: important

With the new failregex line in the config file, fail2ban fails to ban ssh 
accesses by illegal users.
Furthermore, modifying the failregex probably doesn't prevent the security 
breach(#330827).
fail2ban itself rather than the fairegex must be changed to parse failure log 
more strictly
so that it can obtain the real IP address at the end of the line, not the 
IP-like user name.


-- System Information:
Debian Release: 3.1
Architecture: i386 (i686)
Kernel: Linux 2.4.27-2-686
Locale: LANG=C, LC_CTYPE=C (charmap=ANSI_X3.4-1968)

Versions of packages fail2ban depends on:
ii  iptables                      1.2.11-10  Linux kernel 2.4+ iptables adminis
ii  python                        2.3.5-2    An interactive high-level object-o

-- no debconf information


-- 
To UNSUBSCRIBE, email to [EMAIL PROTECTED]
with a subject of "unsubscribe". Trouble? Contact [EMAIL PROTECTED]

Reply via email to