run firehol before fail2ban

Jonathan Baecker <[email protected]> Sun, 22 Jan 2017 08:39:50 +0100
Newsgroups gmane.comp.security.firewalls.firehol.user
Message-ID <[email protected]>
Hello everybody,
sorry that I ask the question here, but I don't found info's for that in 
google. How do you manage the starting behavior from firehol and 
fail2ban? In my setup fail2ban starts before firehol, so when firehol 
start it delete the settings from fail2ban. I run both on ubuntu 16.04, 
fail2ban runs here not with an native systemd service.

My thoughts  was:

 1. I write a simple script what checks the firehol service, that it is
    active and start then fail2ban new
 2. I create a systemd service for fail2ban and put firehol.service to
    the after statement.

The first solution is a bit dirty for me and with the second way I am 
not sure how clean it will work, specially when it comes to system updates.

What you think is the best solution?


Regards

Jonathan

_______________________________________________
Firehol-support mailing list
[email protected]
http://lists.firehol.org/mailman/listinfo/firehol-support