27/10/2015 :

    – ajout d’une règle dans le fichier /etc/fail2ban/jail.conf

    enabled = true
    port = 80,443
    protocol = tcp
    filter = attack-xmlrpc
    logpath = /var/www/www.squadfrance-error.log
    maxretry = 4
    # findtime: 10 mins
    findtime = 600
    # bantime: 1 week
    bantime = 604800

    – ajout du filtre /etc/fail2ban/filter.d/attack-xmlrpc.conf

    failregex = .*:(80|443) .*(GET|POST) .*/xmlrpc.php
    ignoreregex =