diff --git a/ansible/group_vars/all b/ansible/group_vars/all index 357ce7bf7e37f26729f61179864abbf62ec5ed44..51a889a699b39a511f202f93416092816b0137bb 100644 --- a/ansible/group_vars/all +++ b/ansible/group_vars/all @@ -50,7 +50,6 @@ # ssh proxy enable_ssh_proxy_config: false sshpiper_dest_dir: "/opt/sshpiper" - fail2ban_cidr_list: "127.0.0.1/8" # rsyslog enable_rsyslog_config: false @@ -81,3 +80,4 @@ maxretry: 1 findtime: 600 bantime: 1200 + fail2ban_white_list: "127.0.0.1/8" diff --git a/ansible/roles/fail2ban/templates/jail.local.j2 b/ansible/roles/fail2ban/templates/jail.local.j2 index af6ae6654f0a46487bf6a10863297cbb45d30aa3..87f9e4fa06f0ca75ed77d0a2361262f94859d91d 100644 --- a/ansible/roles/fail2ban/templates/jail.local.j2 +++ b/ansible/roles/fail2ban/templates/jail.local.j2 @@ -1,7 +1,7 @@ [DEFAULT] banaction = firewalld bantime = {{ bantime }} -ignoreip = {{ fail2ban_cidr_list }} +ignoreip = {{ fail2ban_white_list }} [sshd] enabled = true