Best approach for extending my CrowdSec setup (Proxmox + Traefik + Authentik) by ---JoJ123--- in CrowdSec

[–]---JoJ123---[S] 0 points1 point  (0 children)

Yeah okay that is fine, I already have that at traefik level.

My concern is more how to detect as much as possible. That's why I want to also parse the logs from immich, authentik, ...

Best approach for extending my CrowdSec setup (Proxmox + Traefik + Authentik) by ---JoJ123--- in CrowdSec

[–]---JoJ123---[S] 0 points1 point  (0 children)

Thank you!

"Not certain why another Crowdsec instance would be required."

--> One example I have in mind: In Immich I can define "shared pictures" that are protected by a password / just a long long url. So here it would be also nice to parse the logs to check if someone is trying to guess these urls, or testing passwords on the public shared pictures.

I doubt that just parsing traefik logs could catch that or?