Filter list from the public FilterLists directory. Format: CIDRs (IPv6). See the project homepage for details and inclusion criteria.
Blocklists for iptables / ipset
Classic Linux firewall setup: load the addresses into an ipset and drop matching traffic.
Adding a blocklist to iptables / ipset
ipset create blocklist hash:net -exist
curl -fsSL "https://www.team-cymru.org/Services/Bogons/fullbogons-ipv6.txt" | grep -Eo '^[0-9]{1,3}(.[0-9]{1,3}){3}(/[0-9]{1,2})?' |
while read -r net; do ipset add blocklist "$net" -exist; done
iptables -I INPUT -m set --match-set blocklist src -j DROP
iptables -I FORWARD -m set --match-set blocklist src -j DROP Persist the set and re-run the download from cron to keep it current:
ipset save blocklist -f /etc/ipset.blocklist
# /etc/cron.daily/blocklist
The address shown above is an example. Every list in the directory has its own URL, which you can copy with one click.
Recommended lists for iptables / ipset
By topic
All 55 lists for iptables / ipset
Filter list covering malware. Format: IPs (IPv4). See the project homepage for details and inclusion criteria.
Filter list covering ads, privacy, malware. Format: DNS servers. See the project homepage for details and inclusion criteria.
Filter list covering crypto, ads, privacy, malware, phishing. Format: IPs (IPv4). See the project homepage for details and inclusion criteria.
Filter list covering malware. Format: IPs (IPv4). See the project homepage for details and inclusion criteria.
Filter list covering malware. Format: IPs (IPv4). See the project homepage for details and inclusion criteria.
Filter list covering malware. Format: DNS servers. See the project homepage for details and inclusion criteria.
Filter list covering malware, nsfw. Format: DNS servers. See the project homepage for details and inclusion criteria.
Filter list covering malware. Format: DNS servers. See the project homepage for details and inclusion criteria.
CPBL CIDR (IPv4)
Filter list covering privacy, malware. Format: CIDRs (IPv4). Maintained by Chon Bongo. See the project homepage for details and inclusion […]
Dandelion Sprout’s Nordic Filters for Tidier Websites (for Shadowsocks)
Filter list covering ads, malware. Format: Socks5. Maintained by Imre Kristoffer Eilertsen. See the project homepage for details and inclusion […]
Dandelion Sprout’s Official DNS Server
Filter list covering ads, malware, phishing, cookies, push-notes. Format: DNS servers. Maintained by Imre Kristoffer Eilertsen. See the project homepage […]
Filter list covering malware. Format: IPs (IPv4). See the project homepage for details and inclusion criteria.
DShield.org Recommended Block List
Filter list covering malware. Format: IPs (Start-end-range). Maintained by DShield. See the project homepage for details and inclusion criteria.
Filter list covering malware. Format: IPs (IPv4). See the project homepage for details and inclusion criteria.
Filter list covering malware. Format: IPs (IPv4). See the project homepage for details and inclusion criteria.
Energized IP Extension
Filter list covering malware. Format: IPs (IPv4). Maintained by Team Boltz. See the project homepage for details and inclusion criteria.
Live command servers of banking malware.
Filter list covering malware. Format: IPs (IPv4). See the project homepage for details and inclusion criteria.
Filter list covering malware. Format: IPs (IPv4). See the project homepage for details and inclusion criteria.
Filter list covering malware. Format: IPs (IPv4). See the project homepage for details and inclusion criteria.
gnX Threat Intelligence
Filter list covering malware. Format: IPs (IPv4). Maintained by gnxsecurity. See the project homepage for details and inclusion criteria.
Filter list covering malware. Format: IPs (IPv4). See the project homepage for details and inclusion criteria.
Filter list covering malware. Format: IPs (IPv4).
Filter list covering malware. Format: IPs (IPv4).
