From 42ef081ff95a6f3129f63a4dc60588475d9a3e15 Mon Sep 17 00:00:00 2001 From: vskubriev Date: Sat, 24 Aug 2013 11:11:32 -0400 Subject: [PATCH] Update README.md about rsyslog --- README.md | 10 ++++++++++ 1 file changed, 10 insertions(+) diff --git a/README.md b/README.md index ffbd768..a68348c 100644 --- a/README.md +++ b/README.md @@ -37,6 +37,16 @@ Usage Typically, include `recipe[fail2ban]` in a base role applied to all nodes. +Particular those related to rsyslog +===== + +If you are using rsyslog parameter "$RepeatedMsgReduction on" in rsyslog.conf file +then you can get "Last message repeated N times" in system log file (for example auth.log). +And it will affect the work of fail2ban, so that fail2ban will not work because the internal counter maxretry will not extend their +Then you can change parameter "$RepeatedMsgReduction off" in rsyslog.conf file for maximum accuracy of maximum failed login attempts + +This rsyslog parameter is default ON for ubuntu 12.04 LTS for example. + License and Author ==================