IPS

Blocklists for iptables / ipset

Classic Linux firewall setup: load the addresses into an ipset and drop matching traffic.

18compatible lists
1supported formats
10categories

Adding a blocklist to iptables / ipset

ipset create blocklist hash:net -exist
curl -fsSL "https://www.team-cymru.org/Services/Bogons/fullbogons-ipv6.txt" | grep -Eo '^[0-9]{1,3}(.[0-9]{1,3}){3}(/[0-9]{1,2})?' | 
  while read -r net; do ipset add blocklist "$net" -exist; done
iptables -I INPUT  -m set --match-set blocklist src -j DROP
iptables -I FORWARD -m set --match-set blocklist src -j DROP

Persist the set and re-run the download from cron to keep it current:

ipset save blocklist -f /etc/ipset.blocklist
# /etc/cron.daily/blocklist

The address shown above is an example. Every list in the directory has its own URL, which you can copy with one click.

By topic

All 18 lists for iptables / ipset

Submit a list
18 lists < 7 days < 30 days older

Filter list covering proxy. Format: DNS servers. See the project homepage for details and inclusion criteria.

Security IP / CIDR
- entries
±0 last change
updated
FHIPSMTWRTOPN+3

Filter list covering proxy. Format: DNS servers. See the project homepage for details and inclusion criteria.

Security IP / CIDR
- entries
±0 last change
updated
FHIPSMTWRTOPN+3

Filter list covering proxy. Format: Socks5. See the project homepage for details and inclusion criteria.

Security IP / CIDR
16.4k entries
±0 last change
updated
FHIPSMTWRTOPN+3

Filter list covering ads, proxy. Format: Socks5. See the project homepage for details and inclusion criteria.

Ads Security IP / CIDR
17.9k entries
±0 last change
updated
FHIPSMTWRTOPN+3

Filter list covering proxy. Format: DNS servers.

Security IP / CIDR
- entries
±0 last change
updated
FHIPSMTWRTOPN+3

Filter list covering proxy. Format: Socks5. See the project homepage for details and inclusion criteria.

Security IP / CIDR
4,608 entries
+3 -0 last change
updated
FHIPSMTWRTOPN+3

Filter list covering proxy. Format: IPs (IPv4). See the project homepage for details and inclusion criteria.

Security IP / CIDR
400 entries
±0 last change
updated
FHIPSMTWRTOPN+3

Filter list covering proxy. Format: DNS servers. See the project homepage for details and inclusion criteria.

Security IP / CIDR
- entries
±0 last change
updated
FHIPSMTWRTOPN+3

Filter list covering ads, privacy, proxy. Format: Socks5.

Ads Privacy Security IP / CIDR
- entries
±0 last change
updated
FHIPSMTWRTOPN+3

Filter list covering proxy. Format: IPs (IPv4). Maintained by ShadowWhisperer. See the project homepage for details and inclusion criteria.

Security IP / CIDR
- entries
±0 last change
updated
FHIPSMTWRTOPN+3

The official list of Tor exit nodes, maintained by the Tor Project.

Security IP / CIDR
1,341 entries
±0 last change
updated
FHIPSMTWRTOPN+2

Filter list covering proxy. Format: IPs (IPv4). See the project homepage for details and inclusion criteria.

Security IP / CIDR
8,054 entries
±0 last change
updated
FHIPSMTWRTOPN+3

Filter list covering proxy. Format: IPs (IPv4). See the project homepage for details and inclusion criteria.

Security IP / CIDR
1,746 entries
±0 last change
updated
FHIPSMTWRTOPN+3

Every Tor node, not only the exits.

Security IP / CIDR
9,721 entries
+0 -7 last change
updated
FHIPSMTWRTOPN+2
Scroll to Top