vi /etc/fail2ban/jail.local
###############################
[DEFAULT]
# "ignoreip" can be an IP address, a CIDR mask or a DNS host. Fail2ban will not
# ban a host which matches an address in this list. Several addresses can be
# defined using space separator.
ignoreip = 127.0.0.1
# Override /etc/fail2ban/jail.d/00-firewalld.conf:
banaction = iptables-multiport
[postfix-sasl]
enabled = true
bantime = 86400
findtime = 1800
maxretry = 3
filter = postfix[mode=auth]
logpath = <docker maillog>
backend = auto
[dovecot]
enabled = true
maxretry = 3
bantime = 86400
findtime = 1800
filter = dovecot[mode=aggressive]
logpath = <docker maillog>
backend = auto
[recidive]
enabled = true
bantime = 31536000 ; 1 year
findtime = 18144000 ; 1 month
maxretry = 2
logpath = /var/log/fail2ban.log
backend = auto
###############################