Reaction: Scan Logs for Patterns and Take Action

joahua1 pts0 comments

Introduction | reaction wiki

to navigate

to select

esc<br>to close

Documentation

Git

Introduction

reaction is a daemon that scans program outputs for repeated patterns, and takes action.

A common usage is to scan ssh and webserver logs, and to ban hosts that cause multiple authentication errors.

Welcome on reaction's Wiki!

For an introduction to the rationale behind reaction, see:

Its README

The original v1.0 announcement, in French or in English

The example, fully commented configuration file, in YAML or in JSONnet.

❤️ Please enhance this wiki with your own discoveries! ❤️

Important disclaimer 🌈

This software is gay, trans and anticolonialist.<br>If you're uncomfortable with that, please don't use it, and please don't interact with its maintainer.

Edit this page

ON THIS PAGE

Welcome on reaction's Wiki!

Important disclaimer 🌈

⌘K

Introduction

Get Started

Tutorial in English

Tutorial in French

Configuration reference

Top-level options

Stream

Pattern

Filter

Action

Plugin

Good practices

Security

FAQ

Writing correct stream sources

Examples

Filters

AI crawlers (ChatGPT...)

ASTERISK

Directus

Dolibarr

Nextcloud

nginx

slskd

SSH

Systemd Monitoring

Traefik

User-Agent impersonators

Web crawlers

Webservers Common Log Format

Actions

AbuseIPDB reporting

Email alerting

firewalld

ipset

iptables

nftables

PacketFilter

PostgreSQL

SMS alerting with Free Mobile

Configurations

OpenBSD setup

Configs of ppom

server.jsonnet

activitywatch.jsonnet

Plugins

nftables

Virtual

IPset

Other

Related programs and packages

Articles and talks

reaction introduction wiki action jsonnet please

Related Articles