this post was submitted on 09 Mar 2025
0 points (NaN% liked)
Selfhosted
59976 readers
654 users here now
A place to share alternatives to popular online services that can be self-hosted without giving up privacy or locking you into a service you don't control.
Rules:
-
Be civil: we're here to support and learn from one another. Insults won't be tolerated. Flame wars are frowned upon.
-
No spam.
-
Posts here are to be centered around self-hosting. Please ensure it is clear in your post how it relates to self-hosting.
-
Don't duplicate the full text of your blog or git here. Just post the link for folks to click.
-
Submission headline should match the article title.
-
No trolling.
Resources:
- selfh.st Newsletter and index of selfhosted software and apps
- awesome-selfhosted software
- awesome-sysadmin resources
- Self-Hosted Podcast from Jupiter Broadcasting
Any issues on the community? Report it using the report flag.
Questions? DM the mods!
founded 3 years ago
MODERATORS
you are viewing a single comment's thread
view the rest of the comments
view the rest of the comments

https://github.com/fail2ban/fail2ban
You can set
dbpurgeageto30dand pretty much just run it--or you can setupjail.confwith abantime.factor. Its appeal is that you basically can download it, enable it, and it just works for you. It depends on your environment, though. If you have incoming authorized requests from other services it might be a pain to configure, but I've never used anything easier to protect you from bad actors.fail2ban isn't a WAF?
fail2ban can be configured in just about any way you want. There's no reason to say that fail2ban "isn't" a WAF simply because it wasn't designed that way. It's kinda moot when it can be configured that way.