OSCam absichern (Ubuntu 18.04): Unterschied zwischen den Versionen
Zur Navigation springen
Zur Suche springen
(→Links) |
|||
(8 dazwischenliegende Versionen desselben Benutzers werden nicht angezeigt) | |||
Zeile 4: | Zeile 4: | ||
== FailBan (Bestandteil von OSCam) == | == FailBan (Bestandteil von OSCam) == | ||
... | <pre> | ||
sudo vi /usr/local/etc/oscam.conf | |||
</pre> | |||
<pre> | |||
# failban | |||
failbancount = 0 # Anzahl der erlaubten Fehlversuche mit falschen Zugangsdaten. | |||
failbantime = 1440 # IP Adresse wird für 1440 Minuten (1 Tag) geblockt | |||
</pre> | |||
=== Links === | |||
[https://wiki.streamboard.tv/wiki/OSCam/de/Config/oscam.user#failban https://wiki.streamboard.tv/wiki/OSCam/de/Config/oscam.user#failban] | |||
[https://wiki.streamboard.tv/wiki/OSCam/de/Config/oscam.conf#failbancount https://wiki.streamboard.tv/wiki/OSCam/de/Config/oscam.conf#failbancount] | |||
== Fail2Ban == | == Fail2Ban == | ||
... | === /etc/fail2ban/jail.local === | ||
<pre> | |||
sudo vi /etc/fail2ban/jail.local | |||
</pre> | |||
<pre> | |||
[oscam-tcp] | |||
enabled = true | |||
filter = oscam | |||
port = xxx (Port aus Oscam Config) | |||
logpath = /var/emu/oscam/oscam.log | |||
protocol = tcp | |||
</pre> | |||
=== /etc/fail2ban/filter.d/oscam.conf === | |||
<pre> | |||
sudo vi /etc/fail2ban/filter.d/oscam.conf | |||
</pre> | |||
<pre> | |||
[Definition] | |||
failregex = (.)*(plain|encrypted) (.)*-client rejected \(invalid access\)$ | |||
ignoreregex = | |||
</pre> | |||
=== Links === | |||
[https://www.digital-eliteboard.com/threads/oscam-fail2ban-nicht-internes-failban.483625/ https://www.digital-eliteboard.com/threads/oscam-fail2ban-nicht-internes-failban.483625/] | |||
[https://geosharing.info/threads/fail2ban-for-oscam-not-the-build-in-one.380/ https://geosharing.info/threads/fail2ban-for-oscam-not-the-build-in-one.380/] | |||
Zurück zu [[OSCam-Konfiguration_(Cardsharing)#Absichern|OSCam-Konfiguration]], [[Fail2Ban_(Linux)#Programmkonfigurationen|Fail2Ban]] | Zurück zu [[OSCam-Konfiguration_(Cardsharing)#Absichern|OSCam-Konfiguration]], [[Fail2Ban_(Linux)#Programmkonfigurationen|Fail2Ban]] |
Aktuelle Version vom 12. Oktober 2022, 08:11 Uhr
Noch in Bearbeitung
FailBan (Bestandteil von OSCam)
sudo vi /usr/local/etc/oscam.conf
# failban failbancount = 0 # Anzahl der erlaubten Fehlversuche mit falschen Zugangsdaten. failbantime = 1440 # IP Adresse wird für 1440 Minuten (1 Tag) geblockt
Links
https://wiki.streamboard.tv/wiki/OSCam/de/Config/oscam.user#failban
https://wiki.streamboard.tv/wiki/OSCam/de/Config/oscam.conf#failbancount
Fail2Ban
/etc/fail2ban/jail.local
sudo vi /etc/fail2ban/jail.local
[oscam-tcp] enabled = true filter = oscam port = xxx (Port aus Oscam Config) logpath = /var/emu/oscam/oscam.log protocol = tcp
/etc/fail2ban/filter.d/oscam.conf
sudo vi /etc/fail2ban/filter.d/oscam.conf
[Definition] failregex = (.)*(plain|encrypted) (.)*-client rejected \(invalid access\)$ ignoreregex =
Links
https://www.digital-eliteboard.com/threads/oscam-fail2ban-nicht-internes-failban.483625/
https://geosharing.info/threads/fail2ban-for-oscam-not-the-build-in-one.380/
Zurück zu OSCam-Konfiguration, Fail2Ban