  • Hello Nick,

    As requested:

    content of: clearos-sshd.conf

    content of: clearos-sshd-ddos.conf

    Straight after boot up, result of "lsmod | grep ip_set":

    Straight after /usr/bin/fail2ban-client reload, result of "lsmod | grep ip_set":

    I think the bug you are referring to was that both the above jails actions where identified by the same name in the configuration. This would mess up the iptables: [name=sshd] but also note that they where using a different action at the time: iptables-allports[name=sshd] this was replaced by: iptables-ipset-proto6-allports[...]