Code Monkey home page Code Monkey logo

pg2ipset's People

Contributors

mynamewastaken avatar trajano avatar

Stargazers

 avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar

Watchers

 avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar

pg2ipset's Issues

Make ULOG optional, allow using NFLOG instead of ULOG

Hey there,

I just noticed the following in my logs:

ipt_ULOG: ULOG is deprecated and it will be removed soon, use NFLOG instead

It would be a good idea to support either only NFLOG (might kill some backwards compatibility) or support both, and while at it also allow to disable logging.

Prioritize blocking rules against existing rules

Hello,

How could someone use the ipset-update script at the same time with his own iptables rules? I have already a set of rules which deny all access except for a few ports and the pg2ipset match-set rules are added after them, so I suppose that the top port exception terminates the match.

ipset-update.sh a rare honor is in order

# countries to block, must be lcase COUNTRIES=(af ae ir iq tr cn sa sy ru ua hk id kz kw ly)

It's an exceptionally mean feat to classify 2.057 billion (and counting) people as evil subhumans worth eradicating, and we'd like to honor you with a Lifetime Award of Hatred towards your fellow human beings on this planet Earth of ours.

Well done, Mein Herr, the simple size of your Final Solution is the boldest one yet not just attempted, but actually put into production.

How to create whitelists

I've been digging around and I cannot figure out how to whitelist a range. I can exclude the list (Bogon) that includes my required range, but that's not something I really want to do.

INPUT/OUTPUT works, but nor FORWARDING

Hello,

First off, thanks for your great work. This is really very useful :)

I find that everything works great, except for the FORWARDING iptables rules. E.g.:

When I ping a blacklisted IP from inside the server it is blocked
When connected to the server as a VPN I can ping the blacklisted IP just fine

I've tried to debug this on my own but would love your opinion.

Thanks!

Recommend Projects

  • React photo React

    A declarative, efficient, and flexible JavaScript library for building user interfaces.

  • Vue.js photo Vue.js

    ๐Ÿ–– Vue.js is a progressive, incrementally-adoptable JavaScript framework for building UI on the web.

  • Typescript photo Typescript

    TypeScript is a superset of JavaScript that compiles to clean JavaScript output.

  • TensorFlow photo TensorFlow

    An Open Source Machine Learning Framework for Everyone

  • Django photo Django

    The Web framework for perfectionists with deadlines.

  • D3 photo D3

    Bring data to life with SVG, Canvas and HTML. ๐Ÿ“Š๐Ÿ“ˆ๐ŸŽ‰

Recommend Topics

  • javascript

    JavaScript (JS) is a lightweight interpreted programming language with first-class functions.

  • web

    Some thing interesting about web. New door for the world.

  • server

    A server is a program made to process requests and deliver data to clients.

  • Machine learning

    Machine learning is a way of modeling and interpreting data that allows a piece of software to respond intelligently.

  • Game

    Some thing interesting about game, make everyone happy.

Recommend Org

  • Facebook photo Facebook

    We are working to build community through open source technology. NB: members must have two-factor auth.

  • Microsoft photo Microsoft

    Open source projects and samples from Microsoft.

  • Google photo Google

    Google โค๏ธ Open Source for everyone.

  • D3 photo D3

    Data-Driven Documents codes.