From e8ca659cea54f1be860f0450562a0b90fce7c306 Mon Sep 17 00:00:00 2001 From: Max Lv Date: Sat, 20 Jun 2020 06:45:37 +0800 Subject: [PATCH] report suspicious UDP packet for fail2ban --- src/udprelay.c | 2 ++ 1 file changed, 2 insertions(+) diff --git a/src/udprelay.c b/src/udprelay.c index 03c1f6b3..c445c6b8 100644 --- a/src/udprelay.c +++ b/src/udprelay.c @@ -767,6 +767,7 @@ remote_recv_cb(EV_P_ ev_io *w, int revents) #ifdef MODULE_LOCAL int err = server_ctx->crypto->decrypt_all(buf, server_ctx->crypto->cipher, buf_size); if (err) { + LOGE("failed to handshake with %s: %s", get_addr_str((struct sockaddr *)&src_addr), "suspicious UDP packet"); // drop the packet silently goto CLEAN_UP; } @@ -984,6 +985,7 @@ server_recv_cb(EV_P_ ev_io *w, int revents) int err = server_ctx->crypto->decrypt_all(buf, server_ctx->crypto->cipher, buf_size); if (err) { + LOGE("failed to handshake with %s: %s", get_addr_str((struct sockaddr *)&src_addr), "suspicious UDP packet"); // drop the packet silently goto CLEAN_UP; }