@Bitpalast is right.
When you whitelist all Cloudflare IP ranges in Fail2Ban, you create a potential security vulnerability because any attacker using a Cloudflare-proxied connection would be exempt from Fail2Ban's protection mechanisms.
The reason that this problem occurs is your proxied dns...