majorwiki/02-selfhosting/security
MajorLinux c0837b7e89 wiki: add fail2ban jail for Apache PHP webshell probes
Documents the 2026-04-09 scanner incident where 301-redirected PHP probes
bypassed the existing apache-404scan jail, leaving the scanner unbanned
and firing Netdata web_log_1m_redirects alerts. New jail catches 301/302/
403/404 PHP responses while excluding legitimate WordPress endpoints.

Co-Authored-By: Claude Opus 4.6 (1M context) <noreply@anthropic.com>
2026-04-13 10:17:24 -04:00
..
.keep chore: link vault wiki to Gitea 2026-03-11 11:20:12 -04:00
ansible-unattended-upgrades-fleet.md wiki: audit fixes — broken links, wikilinks, frontmatter, stale content (66 files) 2026-04-02 11:16:29 -04:00
fail2ban-apache-404-scanner-jail.md wiki: audit fixes — broken links, wikilinks, frontmatter, stale content (66 files) 2026-04-02 11:16:29 -04:00
fail2ban-apache-php-probe-jail.md wiki: add fail2ban jail for Apache PHP webshell probes 2026-04-13 10:17:24 -04:00
fail2ban-wordpress-login-jail.md Add wiki article: Fail2ban WordPress login brute force jail 2026-04-02 16:04:13 -04:00
linux-server-hardening-checklist.md wiki: audit fixes — broken links, wikilinks, frontmatter, stale content (66 files) 2026-04-02 11:16:29 -04:00
selinux-fail2ban-execmem-fix.md wiki: audit fixes — broken links, wikilinks, frontmatter, stale content (66 files) 2026-04-02 11:16:29 -04:00
ufw-firewall-management.md Update UFW article: add web server ports lesson from tttpod outage 2026-04-03 03:57:27 -04:00