#764119 fail2ban: Missing fail2ban pattern for libpam-google-authenticator plugin

Package:
fail2ban
Source:
fail2ban
Submitter:
Alexander Dreweke
Date:
2021-10-12 08:57:05 UTC
Severity:
wishlist
Tags:
#764119#5
Date:
2014-10-05 14:40:23 UTC
From:
To:
Dear Maintainer,

Debian Jessie will bring libpam-google-authenticator plugin, that allows
for 2factor authentication for ssh and other services. The following
pattern will enable the fail2ban package to recognise errors in the
2factor authentication:

^%(__prefix_line)s(?:error: PAM: )?Cannot make/remove an entry for the specified session for .* from <HOST>\s*$

Maybe you could consider added the pattern to the jessie package thereby
adding out of the box support for the libpam-google-authenticator
plugin.

Regards,
    Alexander

- -- System Information:
Debian Release: 7.6
  APT prefers stable-updates
  APT policy: (500, 'stable-updates'), (500, 'stable')
Architecture: amd64 (x86_64)

Kernel: Linux 3.14-0.bpo.1-amd64 (SMP w/8 CPU cores)
Locale: LANG=de_DE.UTF-8, LC_CTYPE=de_DE.UTF-8 (charmap=UTF-8)
Shell: /bin/sh linked to /bin/dash

Versions of packages fail2ban depends on:
ii  lsb-base        4.1+Debian8+deb7u1
ii  python          2.7.3-4+deb7u1
ii  python-central  0.6.17

Versions of packages fail2ban recommends:
ii  iptables      1.4.21-2~bpo70+1
pn  python-gamin  <none>
ii  whois         5.2.0~bpo70+1

Versions of packages fail2ban suggests:
ii  bsd-mailx [mailx]       8.1.2-0.20111106cvs-1
ii  heirloom-mailx [mailx]  12.5-2

- -- no debconf information
iEYEARECAAYFAlQxWFEACgkQci0IS3Y4nco3qACcCVbb8OKh+EEdqzJRlCyzkwCH
Y0oAnjorXvrd2ZQDs4FVGT+NiUQbJEL8
=7pLy
-----END PGP SIGNATURE-----

#764119#10
Date:
2021-10-12 08:46:25 UTC
From:
To:
There is still no such rule in 0.11.2-2 and we should check what
bullseye/stable's libpam-google-authenticator is logging these days.