• 8 Posts
  • 385 Comments
Joined 2 years ago
cake
Cake day: June 8th, 2023

help-circle










  • AustralianSimonOPtoSelfhostedLow resource, Performant WAF
    link
    fedilink
    English
    arrow-up
    1
    ·
    edit-2
    10 days ago

    I’m trying to block the most likely attack vectors which is definitely VPS providers at this point in time. I just figure if I am blocking subnets plus additionals I identify it will force them out of these vectors to attack in ways I might be able to report better abuse.

    Here check out my analysis.





  • AustralianSimonOPtoSelfhostedLow resource, Performant WAF
    link
    fedilink
    English
    arrow-up
    3
    ·
    edit-2
    11 days ago

    I have more than 50k but even that page doesn’t recommend it.

    Top of that page

    Recommendation: Use WAF custom rules instead

    Cloudflare recommends that you create WAF custom rules instead of IP Access rules to perform IP-based or geography-based blocking (geoblocking):

    • For IP-based blocking, use an IP list in the custom rule expression.

    On the fail2ban front, can I run my traffic through a f2b container and out into my app?