FreePBX / issue-tracker

The unified FreePBX issue tracker.
https://www.freepbx.org
GNU General Public License v3.0
12 stars 1 forks source link

[bug]: Fail2ban problems on new FreePBX install #568

Open tgoltz opened 5 days ago

tgoltz commented 5 days ago

FreePBX Version

FreePBX 17

Issue Description

I just did a clean install of FreePBX 17 on Debian 12 using the install script. I'm getting hundreds of messages like these in my Fail2ban logs:

fail2ban.log:2024-11-23 23:50:57,715 fail2ban.transmitter [26003]: ERROR Command ['set', 'addignoreip', '127.0.1.1'] has failed. Received Exception("Invalid command '127.0.1.1' (no set action or not yet implemented)")

This message is repeated for all IP addresses local to the machine and all IP addresses that I've specified to be ignored by the intrusion detection screen under the firewall.

When I tried to remove and re-install fail2ban, DPKG failed with the following errors:

root@pbx:/etc/fail2ban/action.d# apt install fail2ban Reading package lists... Done Building dependency tree... Done Reading state information... Done Suggested packages: monit The following NEW packages will be installed: fail2ban 0 upgraded, 1 newly installed, 0 to remove and 0 not upgraded. Need to get 0 B/451 kB of archives. After this operation, 2180 kB of additional disk space will be used. (Reading database ... 160787 files and directories currently installed.) Preparing to unpack .../fail2ban_1.0.2-2_all.deb ... Unpacking fail2ban (1.0.2-2) ... dpkg: error processing archive /var/cache/apt/archives/fail2ban_1.0.2-2_all.deb (--unpack): trying to overwrite '/etc/fail2ban/action.d/iptables-allports.conf', which is also in package sangoma-pbx17 2408-1.sng12 Errors were encountered while processing: /var/cache/apt/archives/fail2ban_1.0.2-2_all.deb E: Sub-process /usr/bin/dpkg returned an error code (1)

I went ahead and did a --force-overwrite with DPKG so I could get fail2ban installed again and got the following messages:

root@pbx:/etc/fail2ban/action.d# dpkg -i --force-overwrite /var/cache/apt/archives/fail2ban_1.0.2-2_all.deb (Reading database ... 160787 files and directories currently installed.) Preparing to unpack .../fail2ban_1.0.2-2_all.deb ... Unpacking fail2ban (1.0.2-2) ... dpkg: warning: overriding problem because --force enabled: dpkg: warning: trying to overwrite '/etc/fail2ban/action.d/iptables-allports.conf', which is also in package sangoma-pbx17 2408-1.sng12 dpkg: warning: overriding problem because --force enabled: dpkg: warning: trying to overwrite '/etc/fail2ban/action.d/iptables-multiport.conf', which is also in package sangoma-pbx17 2408-1.sng12 dpkg: warning: overriding problem because --force enabled: dpkg: warning: trying to overwrite '/etc/fail2ban/filter.d/asterisk.conf', which is also in package sangoma-pbx17 2408-1.sng12 dpkg: warning: overriding problem because --force enabled: dpkg: warning: trying to overwrite '/etc/fail2ban/jail.conf', which is also in package sangoma-pbx17 2408-1.sng12

Not sure why there's a Sangoma package that's trying to install files into the fail2ban directory, but I'd tend to assume that it should be possible to install the Debian-provided fail2ban without getting into a fight with the Sangoma packages. If FreePBX customization for fail2ban is needed, it should really be done in jail.local and fail2ban.local.

Operating Environment

FreePBX 17, Asterisk 21.5.0 installed on Debian 12.

+---------------------+------------+---------+------------+-----------+ | Module | Version | Status | License | Signature | +---------------------+------------+---------+------------+-----------+ | accountcodepreserve | 17.0.0.1 | Enabled | GPLv2 | Sangoma | | allowlist | 17.0.1.1 | Enabled | GPLv3+ | Sangoma | | amd | 17.0.1 | Enabled | GPLv3+ | Sangoma | | announcement | 17.0.2.1 | Enabled | GPLv3+ | Sangoma | | api | 17.0.1.6 | Enabled | AGPLv3+ | Sangoma | | arimanager | 17.0.1.1 | Enabled | GPLv3+ | Sangoma | | asterisk-cli | 17.0.2 | Enabled | GPLv3+ | Sangoma | | asteriskinfo | 17.0.2 | Enabled | GPLv3+ | Sangoma | | backup | 17.0.5.61 | Enabled | GPLv3+ | Sangoma | | blacklist | 17.0.1.2 | Enabled | GPLv3+ | Sangoma | | builtin | | Enabled | | Unsigned | | bulkhandler | 17.0.5 | Enabled | GPLv3+ | Sangoma | | calendar | 17.0.4.20 | Enabled | GPLv3+ | Sangoma | | callback | 17.0.2.1 | Enabled | GPLv3+ | Sangoma | | callerid | 17.0.1 | Enabled | Commercial | Sangoma | | callforward | 17.0.1.6 | Enabled | AGPLv3+ | Sangoma | | callrecording | 17.0.3.8 | Enabled | AGPLv3+ | Sangoma | | callwaiting | 17.0.3.4 | Enabled | GPLv3+ | Sangoma | | cdr | 17.0.4.29 | Enabled | GPLv3+ | Sangoma | | cel | 17.0.2.10 | Enabled | GPLv3+ | Sangoma | | certman | 17.0.3.13 | Enabled | AGPLv3+ | Sangoma | | cidlookup | 17.0.1.1 | Enabled | GPLv3+ | Sangoma | | conferences | 17.0.3.2 | Enabled | GPLv3+ | Sangoma | | configedit | 17.0.1.4 | Enabled | AGPLv3+ | Sangoma | | contactmanager | 17.0.5.12 | Enabled | GPLv3+ | Sangoma | | core | 17.0.18.7 | Enabled | GPLv3+ | Sangoma | | customappsreg | 17.0.1 | Enabled | GPLv3+ | Sangoma | | customcontexts | 17.0.1.3 | Enabled | GPLv2+ | Sangoma | | dashboard | 17.0.4.6 | Enabled | AGPLv3+ | Sangoma | | daynight | 17.0.1.1 | Enabled | GPLv3+ | Sangoma | | dictate | 17.0.1.2 | Enabled | GPLv3+ | Sangoma | | directory | 17.0.1.1 | Enabled | GPLv3+ | Sangoma | | disa | 17.0.6 | Enabled | AGPLv3+ | Sangoma | | donotdisturb | 17.0.2.3 | Enabled | GPLv3+ | Sangoma | | dynroute | 17.0.3.2 | Enabled | GPLv3+ | Sangoma | | endpoint | 17.0.1.93 | Enabled | Commercial | Sangoma | | extensionroutes | 17.0.1 | Enabled | Commercial | Sangoma | | extensionsettings | 17.0.1 | Enabled | GPLv3+ | Sangoma | | fax | 17.0.3.4 | Enabled | GPLv3+ | Sangoma | | featurecodeadmin | 17.0.2 | Enabled | GPLv3+ | Sangoma | | filestore | 17.0.2.31 | Enabled | AGPLv3 | Sangoma | | findmefollow | 17.0.4.10 | Enabled | GPLv3+ | Sangoma | | firewall | 17.0.1.29 | Enabled | AGPLv3+ | Sangoma | | framework | 17.0.19.17 | Enabled | GPLv2+ | Sangoma | | hotelwakeup | 17.0.1.6 | Enabled | GPLv2 | Sangoma | | iaxsettings | 17.0.1 | Enabled | AGPLv3 | Sangoma | | infoservices | 17.0.1.1 | Enabled | GPLv2+ | Sangoma | | ivr | 17.0.8 | Enabled | GPLv3+ | Sangoma | | languages | 17.0.1 | Enabled | GPLv3+ | Sangoma | | logfiles | 17.0.3.3 | Enabled | GPLv3+ | Sangoma | | manager | 17.0.6 | Enabled | GPLv2+ | Sangoma | | miscapps | 17.0.3 | Enabled | GPLv3+ | Sangoma | | miscdests | 17.0.1.1 | Enabled | GPLv3+ | Sangoma | | missedcall | 17.0.1.2 | Enabled | GPLv3+ | Sangoma | | music | 17.0.5 | Enabled | GPLv3+ | Sangoma | | outcnam | 17.0.1 | Enabled | GPLv3+ | Sangoma | | outroutemsg | 17.0.1 | Enabled | GPLv3+ | Sangoma | | paging | 17.0.3 | Enabled | GPLv3+ | Sangoma | | parking | 17.0.2.5 | Enabled | GPLv3+ | Sangoma | | phpinfo | 17.0.1 | Enabled | GPLv2+ | Sangoma | | pinsets | 17.0.3.2 | Enabled | GPLv3+ | Sangoma | | pm2 | 17.0.3.3 | Enabled | AGPLv3+ | Sangoma | | presencestate | 17.0.2.4 | Enabled | GPLv3+ | Sangoma | | printextensions | 17.0.1.2 | Enabled | GPLv3+ | Sangoma | | queueprio | 17.0.1.4 | Enabled | GPLv3+ | Sangoma | | queues | 17.0.1.13 | Enabled | GPLv2+ | Sangoma | | recordings | 17.0.2.3 | Enabled | GPLv3+ | Sangoma | | restapps | 17.0.1.27 | Enabled | Commercial | Sangoma | | ringgroups | 17.0.2.6 | Enabled | GPLv3+ | Sangoma | | sangomaconnect | 17.0.1.42 | Enabled | Commercial | Sangoma | | sangomartapi | 17.0.2.16 | Enabled | Commercial | Sangoma | | setcid | 17.0.1.2 | Enabled | GPLv3+ | Sangoma | | sipsettings | 17.0.6.9 | Enabled | AGPLv3+ | Sangoma | | sipstation | 17.0.3.4 | Enabled | Commercial | Sangoma | | sms | 17.0.1.15 | Enabled | Commercial | Sangoma | | smsconnector | 16.0.17.2 | Enabled | GPLv3+ | Unknown | | smsplus | 17.0.3 | Enabled | Commercial | Sangoma | | soundlang | 17.0.4.1 | Enabled | GPLv3+ | Sangoma | | superfecta | 17.0.3.5 | Enabled | GPLv2+ | Sangoma | | sysadmin | 17.0.2.3 | Enabled | Commercial | Sangoma | | timeconditions | 17.0.1.18 | Enabled | GPLv3+ | Sangoma | | tts | 17.0.1.1 | Enabled | GPLv3+ | Sangoma | | ttsengines | 17.0.1 | Enabled | AGPLv3 | Sangoma | | ucp | 17.0.4.23 | Enabled | AGPLv3+ | Sangoma | | userman | 17.0.6.29 | Enabled | AGPLv3+ | Sangoma | | vmblast | 17.0.2 | Enabled | GPLv3+ | Sangoma | | voicemail | 17.0.5.26 | Enabled | GPLv3+ | Sangoma | | voipinnovations | 17.0.1.4 | Enabled | Commercial | Sangoma | | weakpasswords | 17.0.1 | Enabled | GPLv3+ | Sangoma | | webrtc | 17.0.2.2 | Enabled | GPLv3+ | Sangoma | +---------------------+------------+---------+------------+-----------+

Relevant log output

(IP addresses have been masked)

2024-11-23 18:08:05,807 fail2ban.server         [26003]: INFO    Starting Fail2ban v1.0.2
2024-11-23 18:08:05,809 fail2ban.observer       [26003]: INFO    Observer start...
2024-11-23 18:08:05,818 fail2ban.database       [26003]: INFO    Connected to fail2ban persistent database '/var/lib/fa
il2ban/fail2ban.sqlite3'
2024-11-23 18:08:05,820 fail2ban.jail           [26003]: INFO    Creating new jail 'sshd'
2024-11-23 18:08:05,842 fail2ban.jail           [26003]: INFO    Jail 'sshd' uses pyinotify {}
2024-11-23 18:08:05,845 fail2ban.jail           [26003]: INFO    Initiated 'pyinotify' backend
2024-11-23 18:08:05,847 fail2ban.filter         [26003]: INFO      maxLines: 1
2024-11-23 18:08:05,864 fail2ban.filter         [26003]: INFO      maxRetry: 8
2024-11-23 18:08:05,865 fail2ban.filter         [26003]: INFO      findtime: 2400
2024-11-23 18:08:05,865 fail2ban.actions        [26003]: INFO      banTime: 600000
2024-11-23 18:08:05,865 fail2ban.filter         [26003]: INFO    Added logfile: '/var/log/asterisk/fail2ban' (pos = 550
1535, hash = 4096d848148f1ed9854f629aa008278d52ca85b7)
2024-11-23 18:08:05,866 fail2ban.jail           [26003]: INFO    Creating new jail 'asterisk-iptables'
2024-11-23 18:08:05,866 fail2ban.jail           [26003]: INFO    Jail 'asterisk-iptables' uses pyinotify {}
2024-11-23 18:08:05,869 fail2ban.jail           [26003]: INFO    Initiated 'pyinotify' backend
2024-11-23 18:08:05,889 fail2ban.filter         [26003]: INFO      maxRetry: 8
2024-11-23 18:08:05,889 fail2ban.filter         [26003]: INFO      findtime: 2400
2024-11-23 18:08:05,889 fail2ban.actions        [26003]: INFO      banTime: 600000
2024-11-23 18:08:05,890 fail2ban.filter         [26003]: INFO    Added logfile: '/var/log/asterisk/fail2ban' (pos = 550
1535, hash = 4096d848148f1ed9854f629aa008278d52ca85b7)
2024-11-23 18:08:05,890 fail2ban.jail           [26003]: INFO    Creating new jail 'pbx-gui'
2024-11-23 18:08:05,890 fail2ban.jail           [26003]: INFO    Jail 'pbx-gui' uses pyinotify {}
2024-11-23 18:08:05,892 fail2ban.jail           [26003]: INFO    Initiated 'pyinotify' backend
2024-11-23 18:08:05,893 fail2ban.filter         [26003]: INFO      maxRetry: 8
2024-11-23 18:08:05,893 fail2ban.filter         [26003]: INFO      findtime: 2400
2024-11-23 18:08:05,893 fail2ban.actions        [26003]: INFO      banTime: 600000
2024-11-23 18:08:05,894 fail2ban.filter         [26003]: INFO    Added logfile: '/var/log/asterisk/freepbx_security.log' (pos = 109, hash = 807451403123701e73bc039d914ce8324dc07efc)
2024-11-23 18:08:05,894 fail2ban.jail           [26003]: INFO    Creating new jail 'ssh-iptables'
2024-11-23 18:08:05,894 fail2ban.jail           [26003]: INFO    Jail 'ssh-iptables' uses pyinotify {}
2024-11-23 18:08:05,898 fail2ban.jail           [26003]: INFO    Initiated 'pyinotify' backend
2024-11-23 18:08:05,898 fail2ban.filter         [26003]: INFO      maxLines: 1
2024-11-23 18:08:05,899 fail2ban.filter         [26003]: INFO      maxRetry: 8
2024-11-23 18:08:05,899 fail2ban.filter         [26003]: INFO      findtime: 2400
2024-11-23 18:08:05,899 fail2ban.actions        [26003]: INFO      banTime: 600000
2024-11-23 18:08:05,900 fail2ban.filter         [26003]: INFO    Added logfile: '/var/log/auth.log' (pos = 1116404, hash = dc2b5471d94af9a3da727e02c3357bca7fb6e385)
2024-11-23 18:08:05,900 fail2ban.jail           [26003]: INFO    Creating new jail 'apache-tcpwrapper'
2024-11-23 18:08:05,900 fail2ban.jail           [26003]: INFO    Jail 'apache-tcpwrapper' uses pyinotify {}
2024-11-23 18:08:05,902 fail2ban.jail           [26003]: INFO    Initiated 'pyinotify' backend
2024-11-23 18:08:05,905 fail2ban.filter         [26003]: INFO      maxRetry: 8
2024-11-23 18:08:05,905 fail2ban.filter         [26003]: INFO      findtime: 2400
2024-11-23 18:08:05,905 fail2ban.actions        [26003]: INFO      banTime: 600000
2024-11-23 18:08:05,905 fail2ban.filter         [26003]: INFO    Added logfile: '/var/log/apache2/error.log' (pos = 15016, hash = f089841cbda009ab82c6aeb6c140f35565d4baae)
2024-11-23 18:08:05,906 fail2ban.jail           [26003]: INFO    Creating new jail 'vsftpd-iptables'
2024-11-23 18:08:05,906 fail2ban.jail           [26003]: INFO    Jail 'vsftpd-iptables' uses pyinotify {}
2024-11-23 18:08:05,908 fail2ban.jail           [26003]: INFO    Initiated 'pyinotify' backend
2024-11-23 18:08:05,909 fail2ban.filter         [26003]: INFO      maxRetry: 8
2024-11-23 18:08:05,910 fail2ban.filter         [26003]: INFO      findtime: 2400
2024-11-23 18:08:05,910 fail2ban.actions        [26003]: INFO      banTime: 600000
2024-11-23 18:08:05,910 fail2ban.filter         [26003]: INFO    Added logfile: '/var/log/vsftpd.log' (pos = 0, hash = )
2024-11-23 18:08:05,910 fail2ban.jail           [26003]: INFO    Creating new jail 'apache-badbots'
2024-11-23 18:08:05,910 fail2ban.jail           [26003]: INFO    Jail 'apache-badbots' uses pyinotify {}
2024-11-23 18:08:05,913 fail2ban.jail           [26003]: INFO    Initiated 'pyinotify' backend
2024-11-23 18:08:05,918 fail2ban.filter         [26003]: INFO      maxRetry: 8
2024-11-23 18:08:05,918 fail2ban.filter         [26003]: INFO      findtime: 2400
2024-11-23 18:08:05,918 fail2ban.actions        [26003]: INFO      banTime: 600000
2024-11-23 18:08:05,919 fail2ban.filter         [26003]: INFO    Added logfile: '/var/log/apache2/access.log' (pos = 619092, hash = 57a1027f90cfe1d7fa0c9bf80b3343d6c73a946e)
2024-11-23 18:08:05,919 fail2ban.filter         [26003]: INFO    Added logfile: '/var/log/apache2/other_vhosts_access.log' (pos = 621504, hash = 92b8d7e72e6dfde907f74628e0639749a456a326)
2024-11-23 18:08:05,919 fail2ban.jail           [26003]: INFO    Creating new jail 'apache-api'
2024-11-23 18:08:05,919 fail2ban.jail           [26003]: INFO    Jail 'apache-api' uses pyinotify {}
2024-11-23 18:08:05,922 fail2ban.jail           [26003]: INFO    Initiated 'pyinotify' backend
2024-11-23 18:08:05,922 fail2ban.filter         [26003]: INFO      maxRetry: 8
2024-11-23 18:08:05,922 fail2ban.filter         [26003]: INFO      findtime: 2400
2024-11-23 18:08:05,922 fail2ban.actions        [26003]: INFO      banTime: 600000
2024-11-23 18:08:05,923 fail2ban.filter         [26003]: INFO    Added logfile: '/var/log/apache2/access.log' (pos = 619092, hash = 57a1027f90cfe1d7fa0c9bf80b3343d6c73a946e)
2024-11-23 18:08:05,923 fail2ban.filter         [26003]: INFO    Added logfile: '/var/log/apache2/other_vhosts_access.log' (pos = 621504, hash = 92b8d7e72e6dfde907f74628e0639749a456a326)
2024-11-23 18:08:05,923 fail2ban.jail           [26003]: INFO    Creating new jail 'openvpn'
2024-11-23 18:08:05,923 fail2ban.jail           [26003]: INFO    Jail 'openvpn' uses pyinotify {}
2024-11-23 18:08:05,925 fail2ban.jail           [26003]: INFO    Initiated 'pyinotify' backend
2024-11-23 18:08:05,927 fail2ban.filter         [26003]: INFO      maxRetry: 8
2024-11-23 18:08:05,927 fail2ban.filter         [26003]: INFO      findtime: 2400
2024-11-23 18:08:05,927 fail2ban.actions        [26003]: INFO      banTime: 600000
2024-11-23 18:08:05,928 fail2ban.filter         [26003]: INFO    Added logfile: '/var/log/openvpn.log' (pos = 0, hash = )
2024-11-23 18:08:05,928 fail2ban.jail           [26003]: INFO    Creating new jail 'sng-deskapp'
2024-11-23 18:08:05,928 fail2ban.jail           [26003]: INFO    Jail 'sng-deskapp' uses pyinotify {}
2024-11-23 18:08:05,930 fail2ban.jail           [26003]: INFO    Initiated 'pyinotify' backend
2024-11-23 18:08:05,931 fail2ban.filter         [26003]: INFO      maxRetry: 8
2024-11-23 18:08:05,931 fail2ban.filter         [26003]: INFO      findtime: 2400
2024-11-23 18:08:05,931 fail2ban.actions        [26003]: INFO      banTime: 600000
2024-11-23 18:08:05,931 fail2ban.filter         [26003]: INFO    Added logfile: '/var/log/asterisk/sangomartapi/rtapi.l
og' (pos = 0, hash = )
2024-11-23 18:08:05,932 fail2ban.jail           [26003]: INFO    Creating new jail 'recidive'
2024-11-23 18:08:05,932 fail2ban.jail           [26003]: INFO    Jail 'recidive' uses pyinotify {}
2024-11-23 18:08:05,934 fail2ban.jail           [26003]: INFO    Initiated 'pyinotify' backend
2024-11-23 18:08:05,937 fail2ban.filter         [26003]: INFO      maxRetry: 20
2024-11-23 18:08:05,937 fail2ban.filter         [26003]: INFO      findtime: 86400
2024-11-23 18:08:05,937 fail2ban.actions        [26003]: INFO      banTime: 604800
2024-11-23 18:08:05,937 fail2ban.filter         [26003]: INFO    Added logfile: '/var/log/fail2ban.log' (pos = 683462, hash = 594f7574ca5a1e8ebc3602e21edfd0cbaca7ca9d)
2024-11-23 18:08:05,944 fail2ban.jail           [26003]: INFO    Jail 'sshd' started
2024-11-23 18:08:05,958 fail2ban.jail           [26003]: INFO    Jail 'asterisk-iptables' started
2024-11-23 18:08:05,966 fail2ban.jail           [26003]: INFO    Jail 'pbx-gui' started
2024-11-23 18:08:05,967 fail2ban.jail           [26003]: INFO    Jail 'ssh-iptables' started
2024-11-23 18:08:05,973 fail2ban.jail           [26003]: INFO    Jail 'apache-tcpwrapper' started
2024-11-23 18:08:05,975 fail2ban.jail           [26003]: INFO    Jail 'vsftpd-iptables' started
2024-11-23 18:08:05,978 fail2ban.jail           [26003]: INFO    Jail 'apache-badbots' started
2024-11-23 18:08:05,979 fail2ban.jail           [26003]: INFO    Jail 'apache-api' started
2024-11-23 18:08:05,985 fail2ban.actions        [26003]: NOTICE  [asterisk-iptables] Restore Ban 94.23.65.226
2024-11-23 18:08:06,027 fail2ban.jail           [26003]: INFO    Jail 'openvpn' started
2024-11-23 18:08:06,039 fail2ban.jail           [26003]: INFO    Jail 'sng-deskapp' started
2024-11-23 18:08:06,061 fail2ban.jail           [26003]: INFO    Jail 'recidive' started
2024-11-23 18:10:33 : delignoreip 127.0.1.1 in jail apache-api
2024-11-23 18:10:33 : delignoreip 127.0.1.1 in jail apache-badbots
2024-11-23 18:10:34 : delignoreip 127.0.1.1 in jail apache-tcpwrapper
2024-11-23 18:10:34 : delignoreip 127.0.1.1 in jail asterisk-iptables
2024-11-23 18:10:34 : delignoreip 10.xx.x.x in jail apache-api
2024-11-23 18:10:34 : delignoreip 127.0.1.1 in jail openvpn
2024-11-23 18:10:34 : delignoreip 10.xx.x.x in jail apache-badbots
2024-11-23 18:10:34 : delignoreip 127.0.1.1 in jail pbx-gui
2024-11-23 18:10:34 : addignoreip 64.xxx.xxx.xxx in jail apache-api
2024-11-23 18:10:34 : delignoreip 10.xx.x.x in jail apache-tcpwrapper
2024-11-23 18:10:35 : delignoreip 127.0.1.1 in jail recidive
2024-11-23 18:10:35 : addignoreip 64.xxx.xxx.xxx in jail apache-badbots
2024-11-23 18:10:35 : delignoreip 10.xx.x.x in jail asterisk-iptables
2024-11-23 18:10:35 : addignoreip 162.xxx.xxx.xx in jail apache-api
2024-11-23 18:10:35 : delignoreip 127.0.1.1 in jail sng-deskapp
2024-11-23 18:10:35 : addignoreip 64.xxx.xxx.xxx in jail apache-tcpwrapper
2024-11-23 18:10:35 : delignoreip 10.xx.x.x in jail openvpn
2024-11-23 18:10:35 : addignoreip 162.xxx.xxx.xx in jail apache-badbots
2024-11-23 18:10:35 : delignoreip 127.0.1.1 in jail ssh-iptables
2024-11-23 18:10:35 : addignoreip 64.xxx.xxx.xxx in jail asterisk-iptables
2024-11-23 18:10:36 : delignoreip 10.xx.x.x in jail pbx-gui
2024-11-23 18:10:36 : delignoreip 127.0.1.1 in jail sshd
2024-11-23 18:10:36 : addignoreip 162.xxx.xxx.xx in jail apache-tcpwrapper
2024-11-23 18:10:36 : addignoreip 64.xxx.xxx.xxx in jail openvpn
2024-11-23 18:10:36 : delignoreip 10.xx.x.x in jail recidive
2024-11-23 18:10:36 : addignoreip 64.xxx.xxx.xxx in jail pbx-gui
2024-11-23 18:10:36 : addignoreip 162.xxx.xxx.xx in jail asterisk-iptables
2024-11-23 18:10:36 : delignoreip 127.0.1.1 in jail vsftpd-iptables
2024-11-23 18:10:37 : delignoreip 10.xx.x.x in jail sng-deskapp
2024-11-23 18:10:37 : addignoreip 64.xxx.xxx.xxx in jail recidive
2024-11-23 18:10:37 : addignoreip 162.xxx.xxx.xx in jail openvpn
2024-11-23 18:10:37 : delignoreip 10.xx.x.x in jail ssh-iptables
2024-11-23 18:10:37 : addignoreip 162.xxx.xxx.xx in jail pbx-gui
2024-11-23 18:10:37 : addignoreip 64.xxx.xxx.xxx in jail sng-deskapp
2024-11-23 18:10:37 : delignoreip 10.xx.x.x in jail sshd
2024-11-23 18:10:38 : addignoreip 64.xxx.xxx.xxx in jail ssh-iptables
2024-11-23 18:10:38 : addignoreip 162.xxx.xxx.xx in jail recidive
2024-11-23 18:10:38,668 fail2ban.transmitter    [26003]: ERROR   Command ['get', 'ignoreip'] has failed. Received IndexError('list index out of range')
2024-11-23 18:10:38 : delignoreip 10.xx.x.x in jail vsftpd-iptables
2024-11-23 18:10:38 : addignoreip 162.xxx.xxx.xx in jail sng-deskapp
2024-11-23 18:10:38 : addignoreip 64.xxx.xxx.xxx in jail sshd
2024-11-23 18:10:38,851 fail2ban.transmitter    [26003]: ERROR   Command ['set', 'addignoreip', '162.xxx.xxx.xx'] has failed. Received Exception("Invalid command '162.xxx.xxx.xx' (no set action or not yet implemented)")
2024-11-23 18:10:38 : addignoreip 162.xxx.xxx.xx in jail ssh-iptables
2024-11-23 18:10:39,061 fail2ban.transmitter    [26003]: ERROR   Command ['set', 'addignoreip', '159.xxx.xx.xxx'] has failed. Received Exception("Invalid command '159.xxx.xx.xxx' (no set action or not yet implemented)")
2024-11-23 18:10:38 : addignoreip 64.xxx.xxx.xxx in jail vsftpd-iptables
2024-11-23 18:10:38 : addignoreip 162.xxx.xxx.xx in jail sshd
2024-11-23 18:10:39,205 fail2ban.transmitter    [26003]: ERROR   Command ['set', 'addignoreip', '64.xxx.xxx.xxx'] has failed. Received Exception("Invalid command '64.xxx.xxx.xxx' (no set action or not yet implemented)")
2024-11-23 18:10:39,292 fail2ban.transmitter    [26003]: ERROR   Command ['set', 'addignoreip', '127.0.0.1'] has failed. Received Exception("Invalid command '127.0.0.1' (no set action or not yet implemented)")
2024-11-23 18:10:39,369 fail2ban.transmitter    [26003]: ERROR   Command ['set', 'addignoreip', '10.xxx.x.x'] has failed. Received Exception("Invalid command '10.xxx.x.x' (no set action or not yet implemented)")
2024-11-23 18:10:39 : addignoreip 162.xxx.xxx.xx in jail vsftpd-iptables
2024-11-23 18:10:39,453 fail2ban.transmitter    [26003]: ERROR   Command ['set', 'addignoreip', '127.0.1.1'] has failed. Received Exception("Invalid command '127.0.1.1' (no set action or not yet implemented)")
2024-11-23 18:15:32,874 fail2ban.transmitter    [26003]: ERROR   Command ['get', 'ignoreip'] has failed. Received IndexError('list index out of range')
2024-11-23 18:15:32,977 fail2ban.transmitter    [26003]: ERROR   Command ['set', 'addignoreip', '162.xxx.xxx.xx'] has failed. Received Exception("Invalid command '162.xxx.xxx.xx' (no set action or not yet implemented)")
2024-11-23 18:15:33,069 fail2ban.transmitter    [26003]: ERROR   Command ['set', 'addignoreip', '159.xxx.xx.xxx'] has failed. Received Exception("Invalid command '159.xxx.xx.xxx' (no set action or not yet implemented)")
2024-11-23 18:15:33,148 fail2ban.transmitter    [26003]: ERROR   Command ['set', 'addignoreip', '64.xxx.xxx.xxx'] has failed. Received Exception("Invalid command '64.xxx.xxx.xxx' (no set action or not yet implemented)")
2024-11-23 18:15:33,227 fail2ban.transmitter    [26003]: ERROR   Command ['set', 'addignoreip', '127.0.0.1'] has failed. Received Exception("Invalid command '127.0.0.1' (no set action or not yet implemented)")
2024-11-23 18:15:33,309 fail2ban.transmitter    [26003]: ERROR   Command ['set', 'addignoreip', '10.xxx.x.x'] has failed. Received Exception("Invalid command '10.xxx.x.x' (no set action or not yet implemented)")
2024-11-23 18:15:33,389 fail2ban.transmitter    [26003]: ERROR   Command ['set', 'addignoreip', '127.0.1.1'] has failed. Received Exception("Invalid command '127.0.1.1' (no set action or not yet implemented)")
2024-11-23 18:20:22,094 fail2ban.transmitter    [26003]: ERROR   Command ['get', 'ignoreip'] has failed. Received IndexError('list index out of range')
2024-11-23 18:20:22,220 fail2ban.transmitter    [26003]: ERROR   Command ['set', 'addignoreip', '162.xxx.xxx.xx'] has failed. Received Exception("Invalid command '162.xxx.xxx.xx' (no set action or not yet implemented)")
2024-11-23 18:20:22,354 fail2ban.transmitter    [26003]: ERROR   Command ['set', 'addignoreip', '159.xxx.xx.xxx'] has failed. Received Exception("Invalid command '159.xxx.xx.xxx' (no set action or not yet implemented)")
2024-11-23 18:20:22,486 fail2ban.transmitter    [26003]: ERROR   Command ['set', 'addignoreip', '64.xxx.xxx.xxx'] has failed. Received Exception("Invalid command '64.xxx.xxx.xxx' (no set action or not yet implemented)")
2024-11-23 18:20:22,605 fail2ban.transmitter    [26003]: ERROR   Command ['set', 'addignoreip', '127.0.0.1'] has failed. Received Exception("Invalid command '127.0.0.1' (no set action or not yet implemented)")
2024-11-23 18:20:22,733 fail2ban.transmitter    [26003]: ERROR   Command ['set', 'addignoreip', '10.xxx.x.x'] has failed. Received Exception("Invalid command '10.xxx.x.x' (no set action or not yet implemented)")
2024-11-23 18:20:22,867 fail2ban.transmitter    [26003]: ERROR   Command ['set', 'addignoreip', '127.0.1.1'] has failed. Received Exception("Invalid command '127.0.1.1' (no set action or not yet implemented)")
2024-11-23 18:21:42,099 fail2ban.actions        [26003]: NOTICE  [asterisk-iptables] Unban 94.xx.xx.xxx
2024-11-23 18:21:41 : unbanip 94.xx.xx.xxx in jail asterisk-iptables
2024-11-23 18:25:51,641 fail2ban.transmitter    [26003]: ERROR   Command ['get', 'ignoreip'] has failed. Received IndexError('list index out of range')

After reinstalling fail2ban, I'm still seeing the following:

2024-11-26 14:05:23 : addignoreip 162.xxx.xxx.xx in jail recidive
2024-11-26 14:05:23 : addignoreip 64.xxx.xxx.xxx in jail recidive
2024-11-26 14:05:24,400 fail2ban.transmitter    [466199]: ERROR   Command ['get', 'ignoreip'] has failed. Received IndexError('list index out of range')
2024-11-26 14:05:24,584 fail2ban.transmitter    [466199]: ERROR   Command ['set', 'addignoreip', '64.xxx.xxx.xxx'] has failed. Received Exception("Invalid command '64.xxx.xxx.xxx' (no set action or not yet implemented)")
2024-11-26 14:05:24 : delignoreip 127.0.1.1 in jail vsftpd-iptables
2024-11-26 14:05:24 : addignoreip 162.xxx.xxx.xx in jail sng-deskapp
2024-11-26 14:05:24 : addignoreip 64.xxx.xxx.xxx in jail sng-deskapp
2024-11-26 14:05:24,750 fail2ban.transmitter    [466199]: ERROR   Command ['set', 'addignoreip', '127.0.0.1'] has failed. Received Exception("Invalid command '127.0.0.1' (no set action or not yet implemented)")
2024-11-26 14:05:24 : addignoreip 162.xxx.xxx.xx in jail ssh-iptables
2024-11-26 14:05:24,951 fail2ban.transmitter    [466199]: ERROR   Command ['set', 'addignoreip', '162.xxx.xxx.xx'] has failed. Received Exception("Invalid command '162.xxx.xxx.xx' (no set action or not yet implemented)")
2024-11-26 14:05:24 : addignoreip 64.xxx.xxx.xxx in jail ssh-iptables
2024-11-26 14:05:25,049 fail2ban.transmitter    [466199]: ERROR   Command ['set', 'addignoreip', '159.xxx.xx.xxx'] has failed. Received Exception("Invalid command '159.xxx.xx.xxx' (no set action or not yet implemented)")
2024-11-26 14:05:25,158 fail2ban.transmitter    [466199]: ERROR   Command ['set', 'addignoreip', '10.xxx.x.x'] has failed. Received Exception("Invalid command '10.xxx.x.x' (no set action or not yet implemented)")
2024-11-26 14:05:24 : addignoreip 64.xxx.xxx.xxx in jail sshd
2024-11-26 14:05:24 : addignoreip 162.xxx.xxx.xx in jail sshd
2024-11-26 14:05:25,298 fail2ban.transmitter    [466199]: ERROR   Command ['set', 'addignoreip', '127.0.1.1'] has failed. Received Exception("Invalid command '127.0.1.1' (no set action or not yet implemented)")
2024-11-26 14:05:25 : addignoreip 64.xxx.xxx.xxx in jail vsftpd-iptables
2024-11-26 14:05:25 : addignoreip 162.xxx.xxx.xx in jail vsftpd-iptables