From 128cabdf2eba69015792dd2a61eda9cd4c326bd7 Mon Sep 17 00:00:00 2001 From: Marcel Stangenberger Date: Thu, 27 Mar 2025 11:57:48 +0100 Subject: [PATCH] added default config --- sshguard/sshguard.conf | 17 +++++++++++++++++ 1 file changed, 17 insertions(+) create mode 100644 sshguard/sshguard.conf diff --git a/sshguard/sshguard.conf b/sshguard/sshguard.conf new file mode 100644 index 0000000..883873f --- /dev/null +++ b/sshguard/sshguard.conf @@ -0,0 +1,17 @@ +# sshguard.conf -- SSHGuard configuration file + +LOGREADER="LANG=C /usr/bin/journalctl -afb -p info -n1 -t sshd -t sshd-session -o cat" +BLACKLIST_FILE=120:/var/db/sshguard/blacklist.db +BACKEND="/usr/lib/sshguard/sshg-fw-iptables" + +#### OPTIONS #### +THRESHOLD=10 +BLOCK_TIME=120 +DETECTION_TIME=1800 +IPV6_SUBNET=128 +IPV4_SUBNET=32 + +#### EXTRAS #### +PID_FILE=/run/sshguard.pid +BLACKLIST_FILE=90:/var/lib/sshguard/blacklist +WHITELIST_FILE=/etc/sshguard.whitelist