fail2ban still assumes flat log files. Your distro doesn't.

Generate working fail2ban filters and jails that read systemd journald directly.

Get it — $15
$15 one-time · instant access · refund if it doesn't help

If this sounds familiar

How it works

  1. Pick your service and distro
  2. Get a filter, a jail, and the exact journalctl command to verify it matches
  3. Drop it in, confirm the match count, done
Early version. Covers the common services first. If the config it gives you doesn't match real entries in your journal, email info@8thwavemedia.com and I'll refund it.
Get it — $15
$15 one-time · instant access · refund if it doesn't help