Gentoo Websites Logo
Go to: Gentoo Home Documentation Forums Lists Bugs Planet Store Wiki Get Gentoo!
Bug 192492 - net-analyzer/fail2ban: suggest using the -x option when the server can't start
Summary: net-analyzer/fail2ban: suggest using the -x option when the server can't start
Status: RESOLVED UPSTREAM
Alias: None
Product: Gentoo Linux
Classification: Unclassified
Component: New packages (show other bugs)
Hardware: All Linux
: High enhancement (vote)
Assignee: Gentoo Netmon project
URL:
Whiteboard:
Keywords:
Depends on:
Blocks:
 
Reported: 2007-09-14 07:31 UTC by Paweł Hajdan, Jr. (RETIRED)
Modified: 2007-09-14 21:42 UTC (History)
0 users

See Also:
Package list:
Runtime testing required: ---


Attachments

Note You need to log in before you can comment on or make changes to this bug.
Description Paweł Hajdan, Jr. (RETIRED) gentoo-dev 2007-09-14 07:31:16 UTC
This is related to bug 185923. The problem is that when the fail2ban dies and leaves the socket file, it can't be started cleanly in the default configuration. Suggested solution is to alter the /etc/conf.d/fail2ban file, and OK, I won't argue about that.

But please make some message either in the init script when start fails and the socket file is detected, or in the ebuild.

Why it's so important? I had a few situations when fail2ban was not running. That's not nice, and as an admin I would like to prevent situations like that and know in advance about the -x option, not when something goes wrong.
Comment 1 Raphael Marichez (Falco) (RETIRED) gentoo-dev 2007-09-14 21:42:09 UTC
(In reply to comment #0)
> Why it's so important? I had a few situations when fail2ban was not running.

you're telling that a longer error message would have avoided that situation? My opinion is it would have not changed anything. For whatever reason, the developers has chosen to not start fail2ban if the socket still exists, in the default configuration.

i would rather suggest making "-x" the default configuration as from 0.8. This should not do anything harmful since, from the 0.8 version, fail2ban-client pings the server to guess if there is already one running.

The /etc/conf.d/fail2ban config file is provided by upstream. I suggest you to contact cyril.jaquier@fail2ban.org