fail2ban ignores 'ignoreip'

On FreePBX 5.211.65-15 distro, fail2ban continues banning local ips even after adding

ignoreip =

to the file /etc/fail2ban/jail.conf
and after amportal restart. Can someone suggest what to do next?

Well FreePBX configures over the file /etc/fail2ban/jail.local… from the “Intrusion Detection” page… so…

  1. Is it override or append the ‘ignoreip’ attribute of [default] in jail.conf?
  2. Is it possible to add subnet to whitelist as a range or ip addresses must be added individually?
    Regards, Kbeq.

Yes inside sysadmin you can add a subnet as should work

Sorry to jump on the back of this but are IPs that are whitelisted in FreePBX protected from being blocked when using them to SSH? Otherwise, i’ll need to edit files that FreePBX is going to write over?


I noticed that in the sysadmin can specify the mailbox to which notices will be sent to any reports of fail2ban

But seve indicate somewhere a SMTP and their credentials?