With quite a few servers accepting SSH connections and protecting themselves using fail2ban, you very quickly recognize one thing: it makes a lot of sense to centralize fail2ban reporting using syslog.
To update fail2ban logging. you need to edit the /etc/fail2ban/fail2ban.conf file and replace this:
logtarget = SYSLOG
Here's how my section looks when I'm editing a file with vim:
Restart fail2ban service and enjoy:
[email protected]:/var/log # systemctl reload fail2ban
Leave a Reply