[root@mail ~]# vim /etc/fail2ban/action.d/iptables-common.conf [root@mail ~]# grep -A1 '#blocktype' /etc/fail2ban/action.d/iptables-common.conf #blocktype = REJECT --reject-with icmp-port-unreachable blocktype = DROP
[root@mail ~]# /etc/init.d/fail2ban reload Reloading fail2ban: