Hi All,
I am trying to configure Crowdsec on a haproxy server, in order to block IPs that have bad behavior ,m without success. I am unable to make the crowdsec to read the haproxy.log file. I installed the crowdsecurity/haproxy-logs and added the the location of the log file inside /etc/crowdsec/acquis.yaml.
When I list the metrics, the log file and the parser are not visible there, but when I list the parsers, I see that the haproxy parser is enabled.
During the reload of the crowdsec service, I see that the following entry:
level=info msg=“File datasource /var/log/haproxy.log stopping” tail=/var/log/haproxy.log type=file
The idea is to make crowdsec ban IPs based on behavior or based on bad reputation, so that the haproxy won§t forward them to the backends.
OS: Ubuntu 22.04
Haproxy 2.4.22
Crowdsec v1.5.5
Thank you,
Aleksandar Aleksandrov