fail2ban service doesn't work correctly when hostname starts with number
Affects | Status | Importance | Assigned to | Milestone | |
---|---|---|---|---|---|
fail2ban (Ubuntu) |
New
|
Undecided
|
Unassigned |
Bug Description
This is my hostname: 20073.s.
In /var/log/auth.log typical line looks like that:
Aug 15 21:44:42 20073 sshd[1230]: Received disconnect from 127.0.0.1: 11: [preauth]
fail2ban service recognizes hostname like a part of date, so in /var/log/
<...>
2016-08-15 21:44:42,235 fail2ban.
2016-08-15 21:44:42,235 fail2ban.
For this reason fail2ban doesn't ban attackers (it concerns at least for sshd rules and other services, which log in /var/log/auth.log)