fix(traefik): upgrade fail2ban plugin to v0.9.0 and fix config schema

v0.7.1 caused 403 on all routes. v0.9.0 renamed whitelist→allowlist,
changed ip to a comma-separated string, and added enabled/statuscode fields.

Co-Authored-By: Claude Sonnet 4.6 <noreply@anthropic.com>
This commit is contained in:
2026-06-17 10:09:37 +02:00
co-authored by Claude Sonnet 4.6
parent 586f137cf9
commit 3265d69a6c
2 changed files with 5 additions and 7 deletions
+1 -1
View File
@@ -24,7 +24,7 @@ services:
- "--certificatesresolvers.resolver.acme.email=${ACME_EMAIL}"
- "--certificatesresolvers.resolver.acme.storage=/letsencrypt/acme.json"
- "--experimental.plugins.fail2ban.moduleName=github.com/tomMoulard/fail2ban"
- "--experimental.plugins.fail2ban.version=v0.7.1"
- "--experimental.plugins.fail2ban.version=v0.9.0"
ports:
- "80:80"
- "443:443"
+4 -6
View File
@@ -3,13 +3,11 @@ http:
fail2ban:
plugin:
fail2ban:
allowlist:
ip: "127.0.0.1/8,10.0.0.0/8,172.16.0.0/12,192.168.0.0/16,::1"
rules:
bantime: "3h"
findtime: "10m"
maxretry: 5
whitelist:
ip:
- "127.0.0.1/8"
- "10.0.0.0/8"
- "172.16.0.0/12"
- "192.168.0.0/16"
enabled: true
statuscode: "400,401,403-499"