The Blacklists section allows users to manage lists of source IP addresses to control which IP addresses can access the application servers. The module comes with pre-loaded lists of IP addresses for specific countries, and specific kinds of attacks detected or even bad reputation IP lists of 3rd party projects like TOR or CIArmy, SKUDONET regularly updates these lists and users can also create their custom blacklists by creating plain-text lists of IP addresses and loading them by URL request.
With the IPDS module, you can manage lists of IP addresses that you want to block (Blacklists) or allow access (Whitelist) to your farm services. You can create separate lists for blacklisted and whitelisted IP addresses, taking into consideration that Whitelists are checked before Blacklists. If you want to allow access to a certain group of IPs, create first a whitelist with the IPs allowed and finally apply the list “All” with policy deny.
Here is a table showing the available blacklists:
These are the descriptions of each field in the table above
Name: A name for the blacklist, which can be used to identify it in the list of blacklists. Clicking on the name opens a form where you can edit the list.
Preloaded: Determines if the blacklist rule is custom or inbuilt.
Type: Whether the blacklist is stored on the local server or a remote server.
Policy: Whether the blacklist is used to block or allow traffic. Whitelists have precedence over blacklists, so if a client’s IP address matches a whitelist, it will be allowed to access the server, even if it is also on a blacklist.
Farms: The list of farms to which the blacklist is applied. You can expand this field to see all of the farms by clicking on the small square icon to the right of the header.
Status: The status of a blacklist is shown with a colour code.
- Green: Means that the blacklist is enabled and being used by a farm.
- Red: Means that the blacklist is disabled and won’t have any effect.
Actions: You can perform the following actions on a blacklist:
- Create Blacklist: Show the form to create a new blacklist.
- Start: Start the blacklist if it is a remote list.
- Stop: Stop the blacklist if it is a remote list.
- Update list: Update the blacklist if it is a remote list.
- Delete: Delete the blacklist if you created it.
- Edit: Edit the blacklist.
Next Article: IPDS | Blacklists | Create