<?xml version="1.0" encoding="UTF-8"?><rss xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:atom="http://www.w3.org/2005/Atom" version="2.0"><channel><title><![CDATA[Implement Crowdsec, a docker and sever level crowd sourced security guard]]></title><description><![CDATA[<p dir="auto">I would like to suggest implemententing <a href="https://linuxsecurity.com/features/introducing-crowdsec" target="_blank" rel="noopener noreferrer nofollow ugc">Crowdsec</a> as a built-in feature to a cloudron install. Assuming most of our installs (speaking on the community behalf) are internet facing, something like this, could become very powerful and beneficial as a security feature.</p>
]]></description><link>https://forum.cloudron.io/topic/5990/implement-crowdsec-a-docker-and-sever-level-crowd-sourced-security-guard</link><generator>RSS for Node</generator><lastBuildDate>Thu, 11 Jun 2026 13:39:46 GMT</lastBuildDate><atom:link href="https://forum.cloudron.io/topic/5990.rss" rel="self" type="application/rss+xml"/><pubDate>Fri, 12 Nov 2021 07:09:00 GMT</pubDate><ttl>60</ttl><item><title><![CDATA[Reply to Implement Crowdsec, a docker and sever level crowd sourced security guard on Thu, 17 Feb 2022 10:45:22 GMT]]></title><description><![CDATA[<p dir="auto">In my experience, DO not install the nginx bouncer, it's useless if you install the firewall-bouncer anyway. (the firewall bouncer catch attacks, probs etc..even before they reach the nginx server)</p>
<p dir="auto">There is another post on this forum another user and me share their steps by steps to get it running.</p>
]]></description><link>https://forum.cloudron.io/post/43552</link><guid isPermaLink="true">https://forum.cloudron.io/post/43552</guid><dc:creator><![CDATA[rmdes]]></dc:creator><pubDate>Thu, 17 Feb 2022 10:45:22 GMT</pubDate></item><item><title><![CDATA[Reply to Implement Crowdsec, a docker and sever level crowd sourced security guard on Wed, 19 Jan 2022 20:02:07 GMT]]></title><description><![CDATA[<p dir="auto">Hey, since I was here last time we have created a <a href="https://discord.gg/wGN7ShmEE8" target="_blank" rel="noopener noreferrer nofollow ugc">Discord</a> server and that would be a good place to influence CrowdSec devs to implement CrowdSec into Cloudron <img src="https://forum.cloudron.io/assets/plugins/nodebb-plugin-emoji/emoji/android/1f642.png?v=74f512c8ff7" class="not-responsive emoji emoji-android emoji--slightly_smiling_face" style="height:23px;width:auto;vertical-align:middle" title=":-)" alt="🙂" /></p>
]]></description><link>https://forum.cloudron.io/post/42081</link><guid isPermaLink="true">https://forum.cloudron.io/post/42081</guid><dc:creator><![CDATA[klausagnoletti]]></dc:creator><pubDate>Wed, 19 Jan 2022 20:02:07 GMT</pubDate></item><item><title><![CDATA[Reply to Implement Crowdsec, a docker and sever level crowd sourced security guard on Fri, 17 Dec 2021 19:14:35 GMT]]></title><description><![CDATA[<p dir="auto"><a class="plugin-mentions-user plugin-mentions-a" href="/user/makemrproper" aria-label="Profile: makemrproper">@<bdi>makemrproper</bdi></a> my strategy now is to use iptables bouncer with nginx parser.</p>
<p dir="auto">See my feature request for nginx log method though.. you have to revert cloudron nginx logs back to nginx default and not combined2 as they are normally or crowdsec parser won't work..</p>
]]></description><link>https://forum.cloudron.io/post/40681</link><guid isPermaLink="true">https://forum.cloudron.io/post/40681</guid><dc:creator><![CDATA[Mastadamus]]></dc:creator><pubDate>Fri, 17 Dec 2021 19:14:35 GMT</pubDate></item><item><title><![CDATA[Reply to Implement Crowdsec, a docker and sever level crowd sourced security guard on Fri, 17 Dec 2021 19:12:53 GMT]]></title><description><![CDATA[<p dir="auto"><a class="plugin-mentions-user plugin-mentions-a" href="/user/makemrproper" aria-label="Profile: makemrproper">@<bdi>makemrproper</bdi></a> yeah I tried it twice and first time told it to keep original config and second time allowed modifications.. both times nginx refused to start and I couldn't figure out why.</p>
]]></description><link>https://forum.cloudron.io/post/40680</link><guid isPermaLink="true">https://forum.cloudron.io/post/40680</guid><dc:creator><![CDATA[Mastadamus]]></dc:creator><pubDate>Fri, 17 Dec 2021 19:12:53 GMT</pubDate></item><item><title><![CDATA[Reply to Implement Crowdsec, a docker and sever level crowd sourced security guard on Fri, 17 Dec 2021 16:48:35 GMT]]></title><description><![CDATA[<p dir="auto"><a class="plugin-mentions-user plugin-mentions-a" href="/user/mastadamus" aria-label="Profile: mastadamus">@<bdi>mastadamus</bdi></a> Confirmed. This happened to me today, when I tried to install Crowdsec with Nginx bouncer onto my Cloudron VM.</p>
<p dir="auto">Thank heavens for a good backup strategy. Digital Ocean snapshots to the rescue.</p>
<p dir="auto">To have Crowdsec working with my Cloudron install would be a massive value add.</p>
<p dir="auto">I am not even sure why Nginx failed to start afterwards. I did however note that the install modified or wiped a lot of the Nginx configs which were already in place and perhaps modified by Cloudron. But I haven't tried to dive any deeper.</p>
]]></description><link>https://forum.cloudron.io/post/40665</link><guid isPermaLink="true">https://forum.cloudron.io/post/40665</guid><dc:creator><![CDATA[makemrproper]]></dc:creator><pubDate>Fri, 17 Dec 2021 16:48:35 GMT</pubDate></item><item><title><![CDATA[Reply to Implement Crowdsec, a docker and sever level crowd sourced security guard on Fri, 10 Dec 2021 19:10:22 GMT]]></title><description><![CDATA[<p dir="auto"><a class="plugin-mentions-user plugin-mentions-a" href="/user/privsec" aria-label="Profile: privsec">@<bdi>privsec</bdi></a> Yes of course. If you post a question about it in our Discourse <a href="https://discourse.crowdsec.net" target="_blank" rel="noopener noreferrer nofollow ugc">https://discourse.crowdsec.net</a> I am sure someone on the team is able to help.</p>
]]></description><link>https://forum.cloudron.io/post/40360</link><guid isPermaLink="true">https://forum.cloudron.io/post/40360</guid><dc:creator><![CDATA[klausagnoletti]]></dc:creator><pubDate>Fri, 10 Dec 2021 19:10:22 GMT</pubDate></item><item><title><![CDATA[Reply to Implement Crowdsec, a docker and sever level crowd sourced security guard on Fri, 10 Dec 2021 18:02:24 GMT]]></title><description><![CDATA[<p dir="auto"><a class="plugin-mentions-user plugin-mentions-a" href="/user/klausagnoletti" aria-label="Profile: klausagnoletti">@<bdi>klausagnoletti</bdi></a> yup</p>
]]></description><link>https://forum.cloudron.io/post/40359</link><guid isPermaLink="true">https://forum.cloudron.io/post/40359</guid><dc:creator><![CDATA[privsec]]></dc:creator><pubDate>Fri, 10 Dec 2021 18:02:24 GMT</pubDate></item><item><title><![CDATA[Reply to Implement Crowdsec, a docker and sever level crowd sourced security guard on Fri, 10 Dec 2021 07:00:48 GMT]]></title><description><![CDATA[<blockquote>
<p dir="auto"><a class="plugin-mentions-user plugin-mentions-a" href="/user/klausagnoletti" aria-label="Profile: klausagnoletti">@<bdi>klausagnoletti</bdi></a> is this something that could be done by your team?</p>
</blockquote>
<p dir="auto">Sorry but which part? Parsers?</p>
]]></description><link>https://forum.cloudron.io/post/40339</link><guid isPermaLink="true">https://forum.cloudron.io/post/40339</guid><dc:creator><![CDATA[klausagnoletti]]></dc:creator><pubDate>Fri, 10 Dec 2021 07:00:48 GMT</pubDate></item><item><title><![CDATA[Reply to Implement Crowdsec, a docker and sever level crowd sourced security guard on Fri, 10 Dec 2021 03:56:17 GMT]]></title><description><![CDATA[<p dir="auto"><a class="plugin-mentions-user plugin-mentions-a" href="/user/privsec" aria-label="Profile: privsec">@<bdi>privsec</bdi></a>  The other thing to consider is, when i installed the nginx bouncer, even though i left configs default, it crashed the nginx service and i couldn't restart it. Even after I uninstalled the bouncer, I couldn't get nginx back so i had reverted to a snapshot. The iptable bouncer works decent though.  Will have to do further testing to figure out why installing the nginx bouncer crashes nginx for cloudron.</p>
]]></description><link>https://forum.cloudron.io/post/40337</link><guid isPermaLink="true">https://forum.cloudron.io/post/40337</guid><dc:creator><![CDATA[Mastadamus]]></dc:creator><pubDate>Fri, 10 Dec 2021 03:56:17 GMT</pubDate></item><item><title><![CDATA[Reply to Implement Crowdsec, a docker and sever level crowd sourced security guard on Fri, 10 Dec 2021 03:38:47 GMT]]></title><description><![CDATA[<p dir="auto"><a class="plugin-mentions-user plugin-mentions-a" href="/user/mastadamus" aria-label="Profile: mastadamus">@<bdi>mastadamus</bdi></a> said in <a href="/post/40335">Implement Crowdsec, a docker and sever level crowd sourced security guard</a>:</p>
<blockquote>
<p dir="auto"><a class="plugin-mentions-user plugin-mentions-a" href="/user/mastadamus" aria-label="Profile: mastadamus">@<bdi>mastadamus</bdi></a> I've since got the logs to be parsed by taking out the custom "combined2" log format for nginx.conf. If this is to be shipped with cloudron it would either require to have custom parsers written OR the nginx.conf for cloudron would need to use default combined log format. <img src="/assets/uploads/files/1639104346622-ddba26c0-91de-425e-a9f3-12852c5122df-image-resized.png" alt="ddba26c0-91de-425e-a9f3-12852c5122df-image.png" class=" img-fluid img-markdown" /></p>
<p dir="auto">I am using an iptable bouncer and i'm not sure if it will perform block actions on the iptables based of something triggerd by nginx. I will dig further into that. That being said, it is fullfulling the role fail2ban would normally play and is working appropriately.</p>
</blockquote>
<p dir="auto"><a class="plugin-mentions-user plugin-mentions-a" href="/user/klausagnoletti" aria-label="Profile: klausagnoletti">@<bdi>klausagnoletti</bdi></a> is this something that could be done by your team?</p>
]]></description><link>https://forum.cloudron.io/post/40336</link><guid isPermaLink="true">https://forum.cloudron.io/post/40336</guid><dc:creator><![CDATA[privsec]]></dc:creator><pubDate>Fri, 10 Dec 2021 03:38:47 GMT</pubDate></item><item><title><![CDATA[Reply to Implement Crowdsec, a docker and sever level crowd sourced security guard on Fri, 10 Dec 2021 02:47:20 GMT]]></title><description><![CDATA[<p dir="auto"><a class="plugin-mentions-user plugin-mentions-a" href="/user/mastadamus" aria-label="Profile: mastadamus">@<bdi>mastadamus</bdi></a> I've since got the logs to be parsed by taking out the custom "combined2" log format for nginx.conf. If this is to be shipped with cloudron it would either require to have custom parsers written OR the nginx.conf for cloudron would need to use default combined log format. <img src="/assets/uploads/files/1639104346622-ddba26c0-91de-425e-a9f3-12852c5122df-image-resized.png" alt="ddba26c0-91de-425e-a9f3-12852c5122df-image.png" class=" img-fluid img-markdown" /></p>
<p dir="auto">I am using an iptable bouncer and i'm not sure if it will perform block actions on the iptables based of something triggerd by nginx. I will dig further into that. That being said, it is fullfulling the role fail2ban would normally play and is working appropriately.</p>
]]></description><link>https://forum.cloudron.io/post/40335</link><guid isPermaLink="true">https://forum.cloudron.io/post/40335</guid><dc:creator><![CDATA[Mastadamus]]></dc:creator><pubDate>Fri, 10 Dec 2021 02:47:20 GMT</pubDate></item><item><title><![CDATA[Reply to Implement Crowdsec, a docker and sever level crowd sourced security guard on Wed, 08 Dec 2021 09:58:18 GMT]]></title><description><![CDATA[<p dir="auto">Hi!</p>
<p dir="auto">Just to let you good people know: I am head of community at CrowdSec and I think it's a great idea if Cloudron has build-in support for CrowdSec.</p>
<p dir="auto">I would be happy to help anyone here out in installing it - and of course to facilitate Cloudron the help they would need to implement it.</p>
<p dir="auto">Just DM me or write me at klaus (at) crowdsec (dot) net.</p>
]]></description><link>https://forum.cloudron.io/post/40279</link><guid isPermaLink="true">https://forum.cloudron.io/post/40279</guid><dc:creator><![CDATA[klausagnoletti]]></dc:creator><pubDate>Wed, 08 Dec 2021 09:58:18 GMT</pubDate></item><item><title><![CDATA[Reply to Implement Crowdsec, a docker and sever level crowd sourced security guard on Sun, 05 Dec 2021 04:14:07 GMT]]></title><description><![CDATA[<p dir="auto"><a class="plugin-mentions-user plugin-mentions-a" href="/user/teamcrw" aria-label="Profile: teamcrw">@<bdi>teamcrw</bdi></a> I realized crowdsec isn't succesfully parsing the NGINX logs generated by cloudron because Cloudron uses a non standard /non default log format for NGINX. Working on that now.</p>
]]></description><link>https://forum.cloudron.io/post/40141</link><guid isPermaLink="true">https://forum.cloudron.io/post/40141</guid><dc:creator><![CDATA[Mastadamus]]></dc:creator><pubDate>Sun, 05 Dec 2021 04:14:07 GMT</pubDate></item><item><title><![CDATA[Reply to Implement Crowdsec, a docker and sever level crowd sourced security guard on Wed, 01 Dec 2021 22:34:12 GMT]]></title><description><![CDATA[<p dir="auto"><a class="plugin-mentions-user plugin-mentions-a" href="/user/mastadamus" aria-label="Profile: mastadamus">@<bdi>mastadamus</bdi></a> no didn't install nginx bouncer with it. i didn't encounter any problems since i installed it with default settings.</p>
]]></description><link>https://forum.cloudron.io/post/40002</link><guid isPermaLink="true">https://forum.cloudron.io/post/40002</guid><dc:creator><![CDATA[teamcrw]]></dc:creator><pubDate>Wed, 01 Dec 2021 22:34:12 GMT</pubDate></item><item><title><![CDATA[Reply to Implement Crowdsec, a docker and sever level crowd sourced security guard on Fri, 26 Nov 2021 04:22:23 GMT]]></title><description><![CDATA[<p dir="auto"><a class="plugin-mentions-user plugin-mentions-a" href="/user/mastadamus" aria-label="Profile: mastadamus">@<bdi>mastadamus</bdi></a> The IP TABLE bouncer seems to be working fine. Also I installed the metabase Docker container running on 8181 with success.</p>
]]></description><link>https://forum.cloudron.io/post/39819</link><guid isPermaLink="true">https://forum.cloudron.io/post/39819</guid><dc:creator><![CDATA[Mastadamus]]></dc:creator><pubDate>Fri, 26 Nov 2021 04:22:23 GMT</pubDate></item><item><title><![CDATA[Reply to Implement Crowdsec, a docker and sever level crowd sourced security guard on Fri, 26 Nov 2021 03:23:06 GMT]]></title><description><![CDATA[<p dir="auto"><a class="plugin-mentions-user plugin-mentions-a" href="/user/mastadamus" aria-label="Profile: mastadamus">@<bdi>mastadamus</bdi></a> I'd like to give an update. I installed the NGINX bouncer and it took down cloudron's NGINX service. During the install it prompted me if i wanted to change several config files or leave the current file in place and I left my current config file in place yet it still crashed and refused to come back up. More investigation is necessary to make this work.</p>
]]></description><link>https://forum.cloudron.io/post/39818</link><guid isPermaLink="true">https://forum.cloudron.io/post/39818</guid><dc:creator><![CDATA[Mastadamus]]></dc:creator><pubDate>Fri, 26 Nov 2021 03:23:06 GMT</pubDate></item><item><title><![CDATA[Reply to Implement Crowdsec, a docker and sever level crowd sourced security guard on Thu, 25 Nov 2021 14:56:03 GMT]]></title><description><![CDATA[<p dir="auto"><a class="plugin-mentions-user plugin-mentions-a" href="/user/teamcrw" aria-label="Profile: teamcrw">@<bdi>teamcrw</bdi></a> are you installing an nginx bouncer with it?</p>
]]></description><link>https://forum.cloudron.io/post/39777</link><guid isPermaLink="true">https://forum.cloudron.io/post/39777</guid><dc:creator><![CDATA[Mastadamus]]></dc:creator><pubDate>Thu, 25 Nov 2021 14:56:03 GMT</pubDate></item><item><title><![CDATA[Reply to Implement Crowdsec, a docker and sever level crowd sourced security guard on Wed, 24 Nov 2021 14:32:27 GMT]]></title><description><![CDATA[<p dir="auto"><a class="plugin-mentions-user plugin-mentions-a" href="/user/teamcrw" aria-label="Profile: teamcrw">@<bdi>teamcrw</bdi></a> i just installed it now and will get back if i encounter any problems</p>
]]></description><link>https://forum.cloudron.io/post/39732</link><guid isPermaLink="true">https://forum.cloudron.io/post/39732</guid><dc:creator><![CDATA[teamcrw]]></dc:creator><pubDate>Wed, 24 Nov 2021 14:32:27 GMT</pubDate></item><item><title><![CDATA[Reply to Implement Crowdsec, a docker and sever level crowd sourced security guard on Wed, 24 Nov 2021 14:26:28 GMT]]></title><description><![CDATA[<p dir="auto">Did anyone install it on a cloudron instance? We are using it on various Ubuntu rootservers and it works.</p>
]]></description><link>https://forum.cloudron.io/post/39731</link><guid isPermaLink="true">https://forum.cloudron.io/post/39731</guid><dc:creator><![CDATA[teamcrw]]></dc:creator><pubDate>Wed, 24 Nov 2021 14:26:28 GMT</pubDate></item><item><title><![CDATA[Reply to Implement Crowdsec, a docker and sever level crowd sourced security guard on Sun, 21 Nov 2021 00:23:29 GMT]]></title><description><![CDATA[<p dir="auto"><a class="plugin-mentions-user plugin-mentions-a" href="/user/privsec" aria-label="Profile: privsec">@<bdi>privsec</bdi></a> Have you installed this with your cloudron?</p>
]]></description><link>https://forum.cloudron.io/post/39559</link><guid isPermaLink="true">https://forum.cloudron.io/post/39559</guid><dc:creator><![CDATA[Mastadamus]]></dc:creator><pubDate>Sun, 21 Nov 2021 00:23:29 GMT</pubDate></item><item><title><![CDATA[Reply to Implement Crowdsec, a docker and sever level crowd sourced security guard on Mon, 15 Nov 2021 12:36:34 GMT]]></title><description><![CDATA[<p dir="auto">For me, the nicer part of that project is they have "<a href="https://doc.crowdsec.net/docs/getting_started/install_crowdsec/#install-crowdsec" target="_blank" rel="noopener noreferrer nofollow ugc">crowdsec client</a>" which it is able to listen inside the docker habitat and with the <a href="https://doc.crowdsec.net/docs/getting_started/install_crowdsec/#install-a-bouncer" target="_blank" rel="noopener noreferrer nofollow ugc">bouncer</a> apply rules at the host level.</p>
<p dir="auto"><a class="plugin-mentions-user plugin-mentions-a" href="/user/privsec" aria-label="Profile: privsec">@<bdi>privsec</bdi></a> you should change the title since in that case it would replace more than just Fail2Ban and protect more than just SSH.</p>
]]></description><link>https://forum.cloudron.io/post/39304</link><guid isPermaLink="true">https://forum.cloudron.io/post/39304</guid><dc:creator><![CDATA[JOduMonT]]></dc:creator><pubDate>Mon, 15 Nov 2021 12:36:34 GMT</pubDate></item><item><title><![CDATA[Reply to Implement Crowdsec, a docker and sever level crowd sourced security guard on Sun, 14 Nov 2021 01:27:11 GMT]]></title><description><![CDATA[<p dir="auto">To unban yourself, if you do<br />
<code>https://crowdsec.net/unban-my-ip/</code></p>
]]></description><link>https://forum.cloudron.io/post/39247</link><guid isPermaLink="true">https://forum.cloudron.io/post/39247</guid><dc:creator><![CDATA[privsec]]></dc:creator><pubDate>Sun, 14 Nov 2021 01:27:11 GMT</pubDate></item><item><title><![CDATA[Reply to Implement Crowdsec, a docker and sever level crowd sourced security guard on Sun, 14 Nov 2021 01:22:59 GMT]]></title><description><![CDATA[<p dir="auto">To add to how awesome this software is</p>
<p dir="auto"><code>https://crowdsec.net/faq/</code></p>
<pre><code>Server-side treatments involve the following:

    Collecting information (IP / Timestamp / Scenario) sent by the network members accepting to share them
    Distributing curated IP block list (tailor-made for each, according to their choices in the back office (coming soon))

The reputation system (feeding your local daemon with IPs to block), can be deactivated and/or replaced by another source of reputation in the configuration, making the software 100% able to function in a standalone manner if you want absolutely no dependency on any online service. With the local API (LAPI, as of v1.0) agents can be deployed &amp; configured 100% offline if you want to. 
</code></pre>
]]></description><link>https://forum.cloudron.io/post/39246</link><guid isPermaLink="true">https://forum.cloudron.io/post/39246</guid><dc:creator><![CDATA[privsec]]></dc:creator><pubDate>Sun, 14 Nov 2021 01:22:59 GMT</pubDate></item><item><title><![CDATA[Reply to Implement Crowdsec, a docker and sever level crowd sourced security guard on Sat, 13 Nov 2021 21:56:52 GMT]]></title><description><![CDATA[<p dir="auto"><a class="plugin-mentions-user plugin-mentions-a" href="/user/privsec" aria-label="Profile: privsec">@<bdi>privsec</bdi></a> huge fan of this idea.</p>
]]></description><link>https://forum.cloudron.io/post/39235</link><guid isPermaLink="true">https://forum.cloudron.io/post/39235</guid><dc:creator><![CDATA[Mastadamus]]></dc:creator><pubDate>Sat, 13 Nov 2021 21:56:52 GMT</pubDate></item></channel></rss>