On 03/23/2011 09:19 PM, Yaroslav Halchenko wrote: > don't we want it to be "active" in the default configuration, i.e. > actually have the commented out > > actionstart = iptables -I INPUT -m recent --update --seconds 3600 --name > fail2ban-<name> -j DROP You're right, of course.
> 2. in defaults file > >> + >> +FAIL2BAN_USER="fail2ban" Here too. > don't we want this commented out for the default fail2ban setup? > > I still see it using conventional iptables by default and not break users' > setup too much ;) Hopefully :) > PS. In the future -- patches are easier to digest whenever they are sent in > attachment. Best, Zbyszek -- To UNSUBSCRIBE, email to debian-bugs-dist-requ...@lists.debian.org with a subject of "unsubscribe". Trouble? Contact listmas...@lists.debian.org