---------------------------------------------denyhosts.cfg------------------------------------------
############ THESE SETTINGS ARE REQUIRED ############
SECURE_LOG = /var/log/secure #denyhosts是根據(jù)這個(gè)文件來判斷的
HOSTS_DENY = /etc/hosts.deny #控制用戶登錄的文件,可以看到屏蔽的IP
PURGE_DENY = 30m #過多久清除已經(jīng)禁止的IP,這里是30分鐘
BLOCK_SERVICE = sshd #禁止的服務(wù)名
DENY_THRESHOLD_INVALID = 5 #允許無效的用戶失敗次數(shù)
DENY_THRESHOLD_VALID = 10 #允許普通用戶失敗次數(shù)
DENY_THRESHOLD_ROOT = 1 #允許ROOT失敗次數(shù)
DENY_THRESHOLD_RESTRICTED = 1
WORK_DIR = /usr/share/denyhosts/data
SUSPICIOUS_LOGIN_REPORT_ALLOWED_HOSTS=YES
HOSTNAME_LOOKUP=NO #是否做主機(jī)名反向解析
LOCK_FILE = /var/lock/subsys/denyhosts
############ THESE SETTINGS ARE OPTIONAL ############
ADMIN_EMAIL = yafeng.jin@archermind.com
#以郵件方式發(fā)送報(bào)告給yafeng.jin@archermind.com
SMTP_HOST = smtp.archermind.com #以當(dāng)前主機(jī)來發(fā)送郵件
SMTP_PORT = 25 #發(fā)送端口
SMTP_FROM = DenyHosts<<A href="mailto:yafeng.jin@archermind.com">yafeng.jin@archermind.com>
#yafeng.jin為用戶
SMTP_SUBJECT = DenyHosts Report #郵件標(biāo)題
AGE_RESET_VALID=5d
AGE_RESET_ROOT=25d
AGE_RESET_RESTRICTED=25d
AGE_RESET_INVALID=10d
######### THESE SETTINGS ARE SPECIFIC TO DAEMON MODE ##########
DAEMON_LOG = /var/log/denyhosts
DAEMON_SLEEP = 30s
DAEMON_PURGE = 1h
######### THESE SETTINGS ARE SPECIFIC TO ##########
######### DAEMON SYNCHRONIZATION #########