/usr/lib/python3/dist-packages/fail2ban/tests/files/logs
NameSizeModeActions
bsd/-0755rm
3proxy5750644editdlrm
apache-auth128050644editdlrm
apache-badbots6880644editdlrm
apache-botsearch37500644editdlrm
apache-fakegooglebot4800644editdlrm
apache-modsecurity26550644editdlrm
apache-nohome4060644editdlrm
apache-noscript27020644editdlrm
apache-overflows24760644editdlrm
apache-pass2730644editdlrm
apache-shellshock4990644editdlrm
assp52090644editdlrm
asterisk136830644editdlrm
bitwarden7410644editdlrm
centreon2520644editdlrm
counter-strike3990644editdlrm
courier-auth10700644editdlrm
courier-smtp17350644editdlrm
cyrus-imap24550644editdlrm
directadmin8350644editdlrm
domino-smtp12950644editdlrm
dovecot110170644editdlrm
dropbear13290644editdlrm
drupal-auth7880644editdlrm
ejabberd-auth14900644editdlrm
exim101450644editdlrm
exim-spam34620644editdlrm
freeswitch23900644editdlrm
froxlor-auth3540644editdlrm
gitlab3920644editdlrm
grafana5640644editdlrm
groupoffice3090644editdlrm
gssftpd1760644editdlrm
guacamole10160644editdlrm
haproxy-http-auth9430644editdlrm
horde5670644editdlrm
kerio33040644editdlrm
lighttpd-auth7880644editdlrm
mongodb-auth20530644editdlrm
monit24110644editdlrm
murmur7020644editdlrm
mysqld-auth36960644editdlrm
nagios2260644editdlrm
named-refused26050644editdlrm
nginx-botsearch27050644editdlrm
nginx-http-auth17270644editdlrm
nginx-limit-req11710644editdlrm
nsd3890644editdlrm
openhab6920644editdlrm
openwebmail6150644editdlrm
oracleims18430644editdlrm
pam-generic24290644editdlrm
perdition5890644editdlrm
php-url-fopen3140644editdlrm
phpmyadmin-syslog1770644editdlrm
portsentry3410644editdlrm
postfix133000644editdlrm
proftpd29460644editdlrm
pure-ftpd1950644editdlrm
qmail8300644editdlrm
recidive14090644editdlrm
roundcube-auth55550644editdlrm
scanlogd8540644editdlrm
screensharingd11180644editdlrm
selinux-ssh34360644editdlrm
sendmail-auth21910644editdlrm
sendmail-reject104850644editdlrm
sieve5350644editdlrm
slapd11460644editdlrm
softethervpn6480644editdlrm
sogo-auth35520644editdlrm
solid-pop3d16260644editdlrm
squid8950644editdlrm
squirrelmail1970644editdlrm
sshd329030644editdlrm
sshd-journal243960644editdlrm
stunnel2670644editdlrm
suhosin12880644editdlrm
tine205200644editdlrm
traefik-auth18530644editdlrm
uwimap-auth15450644editdlrm
vsftpd11220644editdlrm
webmin-auth6400644editdlrm
wuftpd6310644editdlrm
xinetd-fail3310644editdlrm
znc-adminlog7080644editdlrm
zoneminder2300644editdlrm
zzz-generic-example42450644editdlrm
zzz-sshd-obsolete-multiline360644editdlrm
Edit: /usr/lib/python3/dist-packages/fail2ban/tests/files/logs/mysqld-auth (3696B)
# failJSON: { "time": "2013-03-24T00:04:00", "match": true , "host": "192.168.1.35" } 130324 0:04:00 [Warning] Access denied for user 'root'@'192.168.1.35' (using password: NO) # failJSON: { "time": "2013-03-24T08:24:09", "match": true , "host": "220.95.238.171" } 130324 8:24:09 [Warning] Access denied for user 'root'@'220.95.238.171' (using password: NO) # failJSON: { "time": "2013-03-24T17:56:13", "match": true , "host": "61.160.223.112" } 130324 17:56:13 [Warning] Access denied for user 'root'@'61.160.223.112' (using password: NO) # failJSON: { "time": "2013-03-24T17:56:14", "match": true , "host": "61.160.223.112" } 130324 17:56:14 [Warning] Access denied for user 'root'@'61.160.223.112' (using password: YES) # failJSON: { "time": "2013-03-24T19:01:39", "match": true , "host": "61.147.108.35" } 130324 19:01:39 [Warning] Access denied for user 'root'@'61.147.108.35' (using password: NO) # failJSON: { "time": "2013-03-24T19:01:40", "match": true , "host": "61.147.108.35" } 130324 19:01:40 [Warning] Access denied for user 'root'@'61.147.108.35' (using password: YES) # failJSON: { "time": "2004-09-16T21:30:26", "match": true , "host": "74.207.241.159" } Sep 16 21:30:26 catinthehat mysqld: 130916 21:30:26 [Warning] Access denied for user 'hacker'@'74.207.241.159' (using password: YES) # failJSON: { "time": "2004-09-16T21:30:32", "match": true , "host": "74.207.241.159" } Sep 16 21:30:32 catinthehat mysqld: 130916 21:30:32 [Warning] Access denied for user 'hacker'@'74.207.241.159' (using password: NO) # failJSON: { "time": "2015-10-07T06:09:42", "match": true , "host": "127.0.0.1", "desc": "mysql 5.6 log format" } 2015-10-07 06:09:42 5907 [Warning] Access denied for user 'root'@'127.0.0.1' (using password: YES) # failJSON: { "time": "2015-10-07T08:25:38", "match": true , "host": "192.0.2.1", "desc": "log format with extra space between the date and time stamps, gh-1639" } 2015-10-07 8:25:38 139845235329792 [Warning] Access denied for user 'user'@'192.0.2.1' (using password: YES) # failJSON: { "time": "2016-02-24T15:26:18", "match": true , "host": "localhost", "desc": "mysql 5.6 log format, Note instead of Warning" } 2016-02-24T15:26:18.237955 6 [Note] Access denied for user 'root'@'localhost' (using password: YES) # failJSON: { "time": "2016-02-24T15:26:18", "match": false , "host": "localhost", "desc": "A hypothetical example of injection having full log line first (for paranoid yoh)" } 2016-02-24T15:26:18.237955 6 [Note] Access denied for user 'root'@'localhost' (using password: YES) condition lead to a hypothetical failure # failJSON: { "time": "2019-01-03T09:50:04", "match": true , "host": "192.0.2.1", "desc": "mysql 8.0.13 logging with details, (log-error-verbosity = 3, gh-2314)" } 2019-01-03T08:50:04.634875Z 113 [Note] [MY-010926] [Server] Access denied for user 'root'@'192.0.2.1' (using password: NO) # failJSON: { "time": "2019-09-06T01:45:18", "match": true , "host": "192.0.2.2", "desc": "ISO timestamp within log message" } 2019-09-06T01:45:18 srv mysqld: 2019-09-06 1:45:18 140581192722176 [Warning] Access denied for user 'global'@'192.0.2.2' (using password: YES) # failJSON: { "time": "2019-09-24T13:16:50", "match": true , "host": "192.0.2.3", "desc": "ISO timestamp within log message" } 2019-09-24T13:16:50 srv mysqld[1234]: 2019-09-24 13:16:50 8756 [Warning] Access denied for user 'root'@'192.0.2.3' (using password: YES) # filterOptions: [{"logtype": "file"}, {"logtype": "short"}, {"logtype": "journal"}] # failJSON: { "match": true , "host": "192.0.2.1", "user":"root", "desc": "mariadb 10.4 log format, gh-2611" } 2020-01-16 21:34:14 4644 [Warning] Access denied for user 'root'@'192.0.2.1' (using password: YES)