{"id":1796,"date":"2022-10-31T21:46:01","date_gmt":"2022-04-21T16:33:37","guid":{"rendered":""},"modified":"2025-02-02T00:46:17","modified_gmt":"2025-02-01T23:46:17","slug":"como-instalar-e-configurar-o-fail2ban-no-ubuntu-22-04","status":"publish","type":"post","link":"https:\/\/netcloud24.com\/knowledgebase\/como-instalar-e-configurar-o-fail2ban-no-ubuntu-22-04\/","title":{"rendered":"Como Instalar e Configurar o Fail2ban no Ubuntu 22.04"},"content":{"rendered":"<p>\u00a0<\/p>\n<\/p>\n<h1>\u00a0<\/h1>\n<p>O <strong>Fail2ban<\/strong> \u00e9 uma ferramenta de seguran\u00e7a que ajuda a proteger seu servidor contra ataques de for\u00e7a bruta, bloqueando endere\u00e7os IP ap\u00f3s v\u00e1rias tentativas de login falhadas. Neste tutorial, voc\u00ea aprender\u00e1 como instalar e configurar o Fail2ban no Ubuntu 22.04.<\/p>\n<h2>Requisitos<\/h2>\n<ul>\n<li>Servidor rodando Ubuntu 22.04<\/li>\n<li>Acesso root ou um usu\u00e1rio com privil\u00e9gios sudo<\/li>\n<li>Conex\u00e3o \u00e0 internet<\/li>\n<\/ul>\n<h2>Passo 1: Atualizar o Sistema<\/h2>\n<p>Antes de instalar o Fail2ban, \u00e9 importante garantir que o sistema esteja atualizado. Execute o comando abaixo para atualizar todos os pacotes:<\/p>\n<pre><code>sudo apt update &amp;&amp; sudo apt upgrade -y<\/code><\/pre>\n<h2>Passo 2: Instalar o Fail2ban<\/h2>\n<p>O Fail2ban est\u00e1 dispon\u00edvel nos reposit\u00f3rios padr\u00e3o do Ubuntu. Para instal\u00e1-lo, execute o seguinte comando:<\/p>\n<pre><code>sudo apt install fail2ban -y<\/code><\/pre>\n<h2>Passo 3: Verificar o Status do Fail2ban<\/h2>\n<p>Ap\u00f3s a instala\u00e7\u00e3o, o Fail2ban deve ser iniciado automaticamente. Verifique o status do servi\u00e7o com o seguinte comando:<\/p>\n<pre><code>sudo systemctl status fail2ban<\/code><\/pre>\n<p>Se o Fail2ban n\u00e3o estiver em execu\u00e7\u00e3o, inicie o servi\u00e7o com:<\/p>\n<pre><code>sudo systemctl start fail2ban<\/code><\/pre>\n<h2>Passo 4: Configurar o Fail2ban<\/h2>\n<p>O arquivo de configura\u00e7\u00e3o principal do Fail2ban est\u00e1 localizado em <code>\/etc\/fail2ban\/jail.conf<\/code>. No entanto, para manter a configura\u00e7\u00e3o original intacta, voc\u00ea deve criar uma c\u00f3pia personalizada chamada <code>jail.local<\/code>. Para isso, execute o seguinte comando:<\/p>\n<pre><code>sudo cp \/etc\/fail2ban\/jail.conf \/etc\/fail2ban\/jail.local<\/code><\/pre>\n<p>Agora, edite o arquivo <code>jail.local<\/code> para configurar as regras desejadas:<\/p>\n<pre><code>sudo nano \/etc\/fail2ban\/jail.local<\/code><\/pre>\n<p>Dentro deste arquivo, voc\u00ea pode ajustar v\u00e1rias configura\u00e7\u00f5es importantes, como o tempo de banimento, o n\u00famero de tentativas de login permitidas e o intervalo de tempo para essas tentativas. Por exemplo, para definir o tempo de banimento para 10 minutos (600 segundos) e permitir apenas 3 tentativas falhadas, edite as seguintes linhas:<\/p>\n<pre><code>[DEFAULT]\r\nbantime = 600\r\nfindtime = 600\r\nmaxretry = 3<\/code><\/pre>\n<h2>Passo 5: Habilitar Prote\u00e7\u00e3o para o SSH<\/h2>\n<p>Uma das aplica\u00e7\u00f5es mais comuns do Fail2ban \u00e9 proteger o acesso SSH. Para habilitar a prote\u00e7\u00e3o SSH, encontre a se\u00e7\u00e3o <code>[sshd]<\/code> no arquivo <code>jail.local<\/code> e garanta que o par\u00e2metro <code>enabled<\/code> esteja definido como <code>true<\/code>:<\/p>\n<pre><code>[sshd]\r\nenabled = true<\/code><\/pre>\n<p>Salve o arquivo e reinicie o Fail2ban para aplicar as altera\u00e7\u00f5es:<\/p>\n<pre><code>sudo systemctl restart fail2ban<\/code><\/pre>\n<h2>Passo 6: Verificar o Status do Fail2ban e os IPs Banidos<\/h2>\n<p>Voc\u00ea pode verificar se o Fail2ban est\u00e1 funcionando corretamente e listar os IPs banidos usando o seguinte comando:<\/p>\n<pre><code>sudo fail2ban-client status<\/code><\/pre>\n<p>Para verificar especificamente o status da prote\u00e7\u00e3o SSH, use:<\/p>\n<pre><code>sudo fail2ban-client status sshd<\/code><\/pre>\n<p>Se houver IPs banidos, eles ser\u00e3o listados na sa\u00edda do comando.<\/p>\n<h2>Passo 7: Desbanir um Endere\u00e7o IP (Opcional)<\/h2>\n<p>Se precisar desbanir um endere\u00e7o IP que foi bloqueado erroneamente, voc\u00ea pode faz\u00ea-lo com o seguinte comando:<\/p>\n<pre><code>sudo fail2ban-client set sshd unbanip 192.168.0.100<\/code><\/pre>\n<p>Substitua <code>192.168.0.100<\/code> pelo endere\u00e7o IP que deseja desbanir.<\/p>\n<h2>Passo 8: Configurar Notifica\u00e7\u00f5es por E-mail (Opcional)<\/h2>\n<p>O Fail2ban pode enviar notifica\u00e7\u00f5es por e-mail sempre que ocorrer um banimento. Para configurar isso, edite o arquivo <code>jail.local<\/code> e adicione o endere\u00e7o de e-mail na se\u00e7\u00e3o <code>[DEFAULT]<\/code>:<\/p>\n<pre><code>[DEFAULT]\r\ndestemail = seu-email@example.com\r\nsendername = Fail2Ban\r\nmta = sendmail<\/code><\/pre>\n<p>Certifique-se de que o <strong>sendmail<\/strong> ou outro MTA (agente de transporte de e-mail) esteja instalado e configurado para enviar as notifica\u00e7\u00f5es.<\/p>\n<h2>Servidor VPS<\/h2>\n<p>Se precisar de um <a href=\"https:\/\/netcloud24.com?language=portuguese-pt&amp;currency=4\" target=\"_blank\" rel=\"follow\">servidor VPS<\/a> confi\u00e1vel para hospedar seus servi\u00e7os com seguran\u00e7a e configurar o Fail2ban para proteger o acesso SSH, veja as op\u00e7\u00f5es dispon\u00edveis aqui.<\/p>\n<p><a href=\"https:\/\/de.netcloud24.com\/\" target=\"_blank\">Windows VPS Deutschland<\/a><\/p>\n<p><a href=\"https:\/\/es.netcloud24.com\/\" target=\"_blank\">Windows VPS Espa\u00f1a<\/a><\/p>\n<p><a href=\"https:\/\/nl.netcloud24.com\/\" target=\"_blank\">Windows VPS Nederland<\/a><\/p>\n<p><a href=\"https:\/\/it.netcloud24.com\/\" target=\"_blank\">Windows VPS Italia<\/a><\/p>\n<p><a href=\"https:\/\/pt.netcloud24.com\/\" target=\"_blank\">Windows VPS Portugal<\/a><\/p>\n<p><a href=\"https:\/\/it.netcloud24.com\/\" target=\"_blank\">VPS Windows Italia<\/a><\/p>\n<p><a href=\"https:\/\/ie.netcloud24.com\" target=\"_blank\">Windows VPS<\/a><\/p>\n<p><a href=\"https:\/\/ie.netcloud24.com\" target=\"_blank\">Windows VPS<\/a><\/p>\n<p><a href=\"https:\/\/ie.netcloud24.com\" target=\"_blank\">Windows VPS Sverige<\/a><\/p>\n<p><a href=\"https:\/\/ie.netcloud24.com\" target=\"_blank\">Windows VPS Norge<\/a><\/p>\n<p><a href=\"https:\/\/ie.netcloud24.com\" target=\"_blank\">Windows VPS<\/a><\/p>\n<p><a href=\"https:\/\/ie.netcloud24.com\" target=\"_blank\">Windows VPS T\u00fcrkiye<\/a><\/p>\n<p><a href=\"https:\/\/ie.netcloud24.com\" target=\"_blank\">Windows RDS (Remote Desktop Services)<\/a><\/p>\n<p><a href=\"https:\/\/ie.netcloud24.com\" target=\"_blank\">Windows VPS<\/a><\/p>\n<div class=\"post-author-box\" style=\"border-top:1px solid #ddd;margin-top:20px;padding-top:15px;\">\n<p><strong>Author:<\/strong> \u0141ukasz Bodziony<\/p>\n<p><strong>Website:<\/strong> <a href=\"https:\/\/ca.netcloud24.com\" target=\"_blank\" rel=\"dofollow\">Windows VPS<\/a><\/p>\n<p><em>\u0141ukasz Bodziony is the CEO and founder of <a href=\"https:\/\/netcloud24.com\" target=\"_blank\" rel=\"dofollow\">NETCLOUD24<\/a>, a global VPS hosting brand proudly originating from Poland. With extensive experience in cloud computing, virtualization, and server management, he delivers high-performance <strong>Windows VPS<\/strong> and <strong>Remote Desktop Services (RDS)<\/strong> solutions to clients across Europe, North America, and beyond.<\/em><\/p>\n<p><em>His expertise covers a wide range of technologies, including <strong>Microsoft Azure<\/strong>, <strong>Proxmox VE<\/strong>, <strong>Amazon Web Services (AWS)<\/strong>, and numerous other virtualization and cloud platforms.<\/em><\/p>\n<p><em>Beyond running his hosting business, \u0141ukasz also provides <strong>professional paid server configuration and optimization services<\/strong> for companies and individuals. Outside of work, he is dedicated to caring for his children and building a secure future for them.<\/em><\/p>\n<p><em>If you are interested in working with him or need expert assistance with your hosting, cloud environment, or server setup, feel free to reach out via <a href=\"https:\/\/ca.netcloud24.com\" target=\"_blank\" rel=\"dofollow\">Windows VPS<\/a>.<\/em><\/p>\n<\/p><\/div>\n","protected":false},"excerpt":{"rendered":"<p>\u00a0 \u00a0 O Fail2ban \u00e9 uma ferramenta de seguran\u00e7a que ajuda a proteger seu servidor contra ataques de for\u00e7a bruta, bloqueando endere\u00e7os IP ap\u00f3s v\u00e1rias tentativas de login\u2026<\/p>\n","protected":false},"author":1,"featured_media":3421,"comment_status":"closed","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"_seopress_robots_primary_cat":"","_seopress_titles_title":"","_seopress_titles_desc":"","_seopress_robots_index":"","footnotes":"","jetpack_publicize_message":"","jetpack_publicize_feature_enabled":true,"jetpack_social_post_already_shared":false,"jetpack_social_options":{"image_generator_settings":{"template":"highway","default_image_id":0,"font":"","enabled":false},"version":2}},"categories":[],"tags":[14,12,11,23,20,21,22,17,7,8,6,10,18,19,15,24,16,5,13,9],"class_list":["post-1796","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","tag-cheapvps","tag-cloudvps","tag-hostingvps","tag-rds","tag-rdscal","tag-remotedesktop","tag-remotedesktopvps","tag-servervps","tag-ukvps","tag-virtualserver","tag-vpshosting","tag-vpsserver","tag-vpssolutions","tag-vpswindows","tag-vpswithwindows","tag-windowsrds","tag-windowsserver","tag-windowsvps","tag-windowsvpshosting","tag-windowsvpsuk"],"jetpack_publicize_connections":[],"_links":{"self":[{"href":"https:\/\/netcloud24.com\/knowledgebase\/wp-json\/wp\/v2\/posts\/1796","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/netcloud24.com\/knowledgebase\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/netcloud24.com\/knowledgebase\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/netcloud24.com\/knowledgebase\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/netcloud24.com\/knowledgebase\/wp-json\/wp\/v2\/comments?post=1796"}],"version-history":[{"count":0,"href":"https:\/\/netcloud24.com\/knowledgebase\/wp-json\/wp\/v2\/posts\/1796\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/netcloud24.com\/knowledgebase\/wp-json\/wp\/v2\/media\/3421"}],"wp:attachment":[{"href":"https:\/\/netcloud24.com\/knowledgebase\/wp-json\/wp\/v2\/media?parent=1796"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/netcloud24.com\/knowledgebase\/wp-json\/wp\/v2\/categories?post=1796"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/netcloud24.com\/knowledgebase\/wp-json\/wp\/v2\/tags?post=1796"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}