4 ms·
Check for malicious IPs using DNS
- b112 2y agoBut why? Firehol seems entirely dead at this point. Take a look at the bug reports on github, on the IP address change metric, and research the people behind it. They seem to have moved on. It's not being maintained, and still pulls from defunct lists, dead lists, and so on.
- shivam-dev 2y agoI found no better alternative as the source of data TBH. Open to suggestions. This is a toy project anyway, It won’t be exhaustive for sure and I don’t expect anyone to use it in production. Thanks for the info though, I didn’t know firehol was in such a bad state
- b112 2y agoIt's really sad, I like you, have no where to turn.
- fragmede 2y agoInteresting. Why not offer the db as files to download for faster local lookup though? That's what geoip databases do (for a price).
- b112 2y agofirehol seems to be unmaintained, running on auto, see my other post. However just google 'firehol', and you can download the lists. (Such lists are trivial to use with ipset + linux, for example.)
- shivam-dev 2y agoAs someone else pointed out, yeah its free to download anyway.
- not_a_dane 2y agodig 199.195.253.247 @ipshield.dev +short Apparently, Tor Exit nodes are under safe category.
- shivam-dev 2y agoOops, the list isn’t meant to be exhaustive, just a toy project I built for fun. I really don’t expect anyone to use it
- navigate8310 2y agoI would rather have a API than digging around to find out abusive IPs
- tok1 2y agoI am not familiar with Firehol, so I might be missing something, but isn't this already solved in a (potentially) more powerful, mature and standardized way by DNS RPZ (Response Policy Zones, [1])? Well-established resolvers like Unbound fully support integrating multiple block lists (like oisd.nl, energized.pro, abuse.ch, etc), keeping them up-to-date via zone transfers or HTTPS download, see [2]. [1] https://www.isc.org/rpz/ https://www.isc.org/rpz/ [2] https://unbound.docs.nlnetlabs.nl/en/latest/topics/filtering/rpz.html https://unbound.docs.nlnetlabs.nl/en/latest/topics/filtering...
- shivam-dev 2y agoYeah, it’s just a toy project, nothing much! Thanks for the references though, I’ll read it up :)
- deleted 2y ago[deleted]
- alam2000 2y ago[dead]