Skip to content

Complementing your firewall with IP blocking

License

Notifications You must be signed in to change notification settings

divestedcg/SCFW3

Folders and files

NameName
Last commit message
Last commit date

Latest commit

 

History

65 Commits
 
 
 
 
 
 
 
 
 
 
 
 
 
 

Repository files navigation

SCFW3

Overview

  • These are two simple scripts to block known and learned bad addresses.
  • It is meant to be used on top of firewalld.
  • This is for resource management, not security.

Use

  • Place scfw3.sh into /etc/cron.daily/1scfw
    • Copy ip-aggregator.py into /usr/local/bin/
      • This is mandatory
    • Configure the lists you want enabled at the top of it
  • Place trash.sh into /etc/cron.hourly/2trash
  • chmod +x both of them
  • Enjoy!

Known Issues

  • You must set FirewallBackend to iptables for firewalld or will have very long load times

Credits

Donate

About

Complementing your firewall with IP blocking

Resources

License

Stars

Watchers

Forks

Sponsor this project