One Response to Securing WordPress against Bruteforce using Fail2Ban

  1. Christoph says:


    with my fail2ban version 0.8.6 the regexp has to contain a host placeholder. So i modified the regexp to this:

    ^ .* “POST /wp-login\.php.* HTTP.* 200.*$

    Thx for the article, works like a charm now.


