{"id":2353,"date":"2025-04-24T20:35:03","date_gmt":"2025-04-24T20:35:03","guid":{"rendered":"https:\/\/wiki.xontel.com\/?post_type=manual_documentation&#038;p=2353"},"modified":"2026-08-10T09:41:52","modified_gmt":"2026-08-10T09:41:52","slug":"fail2ban","status":"publish","type":"manual_documentation","link":"https:\/\/wiki.xontel.com\/ar\/documentation\/xontel-platform\/pbx\/pbx-v-1-x-x\/system\/security\/fail2ban\/","title":{"rendered":"Fail2ban"},"content":{"rendered":"<p class=\"wp-block-paragraph\">The <strong>Fail2ban <\/strong>section is used to configure intrusion prevention for the PBX system. It helps protect system services by monitoring suspicious access attempts and automatically banning IP addresses that exceed the configured failure limits.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">Fail2ban is commonly used to reduce brute-force attacks, and repeated failed access attempts against exposed PBX services.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\" style=\"font-size:23px\"><strong>Status Controls<\/strong><\/p>\n\n\n\n<ul class=\"wp-block-list\">\n<li><strong>Start<\/strong>: Activates Fail2ban monitoring(activated by default).<\/li>\n\n\n\n<li><strong>Stop<\/strong>: Deactivates Fail2ban protection.<\/li>\n\n\n\n<li><strong>Status<\/strong>: Displays whether Fail2ban is currently running.<\/li>\n<\/ul>\n\n\n\n<p class=\"has-text-color has-link-color wp-elements-1 wp-block-paragraph\" style=\"color:#4e7188;font-size:23px\"><strong>Whitelist<\/strong><\/p>\n\n\n\n<p class=\"wp-block-paragraph\">The Whitelist section is used to define trusted IP addresses or networks that should not be banned by Fail2ban. Whitelisted entries are excluded from automatic blocking, even if they match detection rules.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\"><strong>Edit Whitelist<\/strong>: Allows administrators to update the trusted IP addresses or network ranges.<\/p>\n\n\n\n<figure class=\"wp-block-image size-large image-border\"><img loading=\"lazy\" decoding=\"async\" width=\"1024\" height=\"421\" src=\"https:\/\/wiki.xontel.com\/wp-content\/uploads\/2025\/04\/image-99-1024x421.png\" alt=\"\" class=\"wp-image-7999\" srcset=\"https:\/\/wiki.xontel.com\/wp-content\/uploads\/2025\/04\/image-99-1024x421.png 1024w, https:\/\/wiki.xontel.com\/wp-content\/uploads\/2025\/04\/image-99-300x123.png 300w, https:\/\/wiki.xontel.com\/wp-content\/uploads\/2025\/04\/image-99-768x316.png 768w, https:\/\/wiki.xontel.com\/wp-content\/uploads\/2025\/04\/image-99-18x7.png 18w, https:\/\/wiki.xontel.com\/wp-content\/uploads\/2025\/04\/image-99.png 1493w\" sizes=\"auto, (max-width: 1024px) 100vw, 1024px\" \/><\/figure>\n\n\n\n<p class=\"has-text-color has-link-color wp-elements-2 wp-block-paragraph\" style=\"color:#4e7188;font-size:23px\"><strong>Settings<\/strong><\/p>\n\n\n\n<p class=\"wp-block-paragraph\">The Settings section is used to configure the global Fail2ban behavior, including ban duration, monitoring window, and retry limits.<\/p>\n\n\n\n<ul class=\"wp-block-list\">\n<li><strong>Ban Time<\/strong>: Defines how long an IP address remains banned after triggering Fail2ban rules.<\/li>\n\n\n\n<li><strong>Find Time<\/strong>: Defines the time window used to count failed attempts.<\/li>\n\n\n\n<li><strong>Max Retries<\/strong>: Defines the maximum number of failed attempts allowed within the find time before the IP address is banned.<br><\/li>\n<\/ul>\n\n\n\n<figure class=\"wp-block-image size-large image-border\"><img loading=\"lazy\" decoding=\"async\" width=\"1024\" height=\"273\" src=\"https:\/\/wiki.xontel.com\/wp-content\/uploads\/2025\/04\/image-100-1024x273.png\" alt=\"\" class=\"wp-image-8000\" srcset=\"https:\/\/wiki.xontel.com\/wp-content\/uploads\/2025\/04\/image-100-1024x273.png 1024w, https:\/\/wiki.xontel.com\/wp-content\/uploads\/2025\/04\/image-100-300x80.png 300w, https:\/\/wiki.xontel.com\/wp-content\/uploads\/2025\/04\/image-100-768x205.png 768w, https:\/\/wiki.xontel.com\/wp-content\/uploads\/2025\/04\/image-100-18x5.png 18w, https:\/\/wiki.xontel.com\/wp-content\/uploads\/2025\/04\/image-100.png 1495w\" sizes=\"auto, (max-width: 1024px) 100vw, 1024px\" \/><\/figure>\n\n\n\n<p class=\"wp-block-paragraph\">The <strong>Reset<\/strong> button is used to <strong>revert changes<\/strong> made<\/p>\n\n\n\n<p class=\"has-text-color has-link-color wp-elements-3 wp-block-paragraph\" style=\"color:#4e7188;font-size:23px\"><strong>Blacklist<\/strong><\/p>\n\n\n\n<p class=\"wp-block-paragraph\">The Blacklist section displays IP addresses that have been banned by Fail2ban. These entries represent sources that triggered intrusion prevention rules based on repeated failed attempts or suspicious activity.<\/p>\n\n\n\n<figure class=\"wp-block-image size-large image-border\"><img loading=\"lazy\" decoding=\"async\" width=\"1024\" height=\"295\" src=\"https:\/\/wiki.xontel.com\/wp-content\/uploads\/2025\/04\/image-101-1024x295.png\" alt=\"\" class=\"wp-image-8001\" srcset=\"https:\/\/wiki.xontel.com\/wp-content\/uploads\/2025\/04\/image-101-1024x295.png 1024w, https:\/\/wiki.xontel.com\/wp-content\/uploads\/2025\/04\/image-101-300x86.png 300w, https:\/\/wiki.xontel.com\/wp-content\/uploads\/2025\/04\/image-101-768x221.png 768w, https:\/\/wiki.xontel.com\/wp-content\/uploads\/2025\/04\/image-101-18x5.png 18w, https:\/\/wiki.xontel.com\/wp-content\/uploads\/2025\/04\/image-101.png 1486w\" sizes=\"auto, (max-width: 1024px) 100vw, 1024px\" \/><\/figure>\n\n\n\n<p class=\"wp-block-paragraph\">Once the <strong>ban time expires<\/strong>, the IP is automatically removed unless it&#8217;s caught again.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">In the Action column, clicking it will manually remove (unban) the IP from the blacklist before the ban time expires.<\/p>","protected":false},"author":1,"featured_media":0,"parent":2345,"menu_order":0,"template":"","manualdocumentationcategory":[16],"manual_doc_tag":[],"class_list":["post-2353","manual_documentation","type-manual_documentation","status-publish","hentry","manualdocumentationcategory-xontel-doc"],"_links":{"self":[{"href":"https:\/\/wiki.xontel.com\/ar\/wp-json\/wp\/v2\/manual_documentation\/2353","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/wiki.xontel.com\/ar\/wp-json\/wp\/v2\/manual_documentation"}],"about":[{"href":"https:\/\/wiki.xontel.com\/ar\/wp-json\/wp\/v2\/types\/manual_documentation"}],"author":[{"embeddable":true,"href":"https:\/\/wiki.xontel.com\/ar\/wp-json\/wp\/v2\/users\/1"}],"version-history":[{"count":11,"href":"https:\/\/wiki.xontel.com\/ar\/wp-json\/wp\/v2\/manual_documentation\/2353\/revisions"}],"predecessor-version":[{"id":9520,"href":"https:\/\/wiki.xontel.com\/ar\/wp-json\/wp\/v2\/manual_documentation\/2353\/revisions\/9520"}],"up":[{"embeddable":true,"href":"https:\/\/wiki.xontel.com\/ar\/wp-json\/wp\/v2\/manual_documentation\/2345"}],"wp:attachment":[{"href":"https:\/\/wiki.xontel.com\/ar\/wp-json\/wp\/v2\/media?parent=2353"}],"wp:term":[{"taxonomy":"manualdocumentationcategory","embeddable":true,"href":"https:\/\/wiki.xontel.com\/ar\/wp-json\/wp\/v2\/manualdocumentationcategory?post=2353"},{"taxonomy":"manual_doc_tag","embeddable":true,"href":"https:\/\/wiki.xontel.com\/ar\/wp-json\/wp\/v2\/manual_doc_tag?post=2353"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}