diff --git a/tasks/fail2ban.yml b/tasks/fail2ban.yml index cc814e7..d4e87aa 100644 --- a/tasks/fail2ban.yml +++ b/tasks/fail2ban.yml @@ -279,35 +279,35 @@ enabled: true state: started -################################################# -# List banned IPs cluster-wide -################################################# +# ################################################# +# # List banned IPs cluster-wide +# ################################################# -- name: fail2ban | Get banned IPs from Proxmox IPSet - ansible.builtin.command: pve-firewall ipset list {{ f2b_ipset_name }} - register: banned_ips - changed_when: false - failed_when: false +# - name: fail2ban | Get banned IPs from Proxmox IPSet +# ansible.builtin.command: pve-firewall ipset list {{ f2b_ipset_name }} +# register: banned_ips +# changed_when: false +# failed_when: false -- name: fail2ban | Show banned IPs - ansible.builtin.debug: - msg: > - Current banned IPs (cluster-wide): - {{ banned_ips.stdout_lines | default([]) }} +# - name: fail2ban | Show banned IPs +# ansible.builtin.debug: +# msg: > +# Current banned IPs (cluster-wide): +# {{ banned_ips.stdout_lines | default([]) }} -################################################# -# Manual unban -################################################# +# ################################################# +# # Manual unban +# ################################################# -- name: fail2ban | Unban specific IP - ansible.builtin.command: > - pve-firewall ipset del {{ f2b_ipset_name }} {{ f2b_unban_ip }} - when: f2b_unban_ip is defined and f2b_unban_ip | length > 0 - register: unban_result - changed_when: "'removed' in unban_result.stdout or unban_result.rc == 0" - failed_when: false +# - name: fail2ban | Unban specific IP +# ansible.builtin.command: > +# pve-firewall ipset del {{ f2b_ipset_name }} {{ f2b_unban_ip }} +# when: f2b_unban_ip is defined and f2b_unban_ip | length > 0 +# register: unban_result +# changed_when: "'removed' in unban_result.stdout or unban_result.rc == 0" +# failed_when: false -- name: fail2ban | Report unban result - ansible.builtin.debug: - msg: "Unbanned IP {{ f2b_unban_ip }}" - when: f2b_unban_ip | length > 0 +# - name: fail2ban | Report unban result +# ansible.builtin.debug: +# msg: "Unbanned IP {{ f2b_unban_ip }}" +# when: f2b_unban_ip | length > 0