Skip to content

Latest commit

 

History

70 Commits

Folders and files

NameName
Last commit message
Last commit date
 
 
 
 
 
 
 
 
 
 
 
 
 
 

Repository files navigation

SCFW3

Overview

  • These are two simple scripts to block known V4 and learned bad V4V6 addresses.
  • It is meant to be used on top of firewalld.
  • This is for resource management, not security.

Use

  • Place scfw3.sh into /etc/cron.daily/1scfw
    • Copy ip-aggregator.py into /usr/local/bin/
      • This is mandatory
    • Configure the lists you want enabled at the top of it
  • Place trash.sh into /etc/cron.hourly/2trash
  • chmod +x both of them
  • Enjoy!

Known Issues

  • You must set FirewallBackend to iptables for firewalld or will have very long load times

Credits

Donate

About

Complementing your firewall with IP blocking

Resources

Stars

7 stars

Watchers

1 watching

Forks

Used by

Contributors

Languages