BotScout

General Category => BotScout Discussion => Topic started by: Mike on September 11, 2015, 07:26:47 AM

Title: FireHOL - firehol_level1
Post by: Mike on September 11, 2015, 07:26:47 AM
FireHOL (http://iplists.firehol.org/) is a project that combines several IP blacklists in order to create a more comprehensive list with (hopefully) fewer false positives.

About firehol_level1
This IP list is a composition of other IP list

The objective is to create a blacklist that can be safe enough to be used on all systems, with a firewall, to block access entirely, from and to its listed IPs.

The key prerequisite for this cause, is to have no false positives. All IPs listed should be bad and should be blocked, without exceptions.

To accomplish this, we include the following IP lists:

    fullbogons - the unroutable IPs
    spamhaus drop and edrop - Don't Route Or Peer IPs
    dshield - the top 20 attacking class-C
    malware lists - the Command and Control IPs

firehol_level1 is updated automatically every time any of its IP lists is updated. If you use FireHOL's update-ipsets.sh, you can just enable it and it will be composed directly from the individual lists, on your computer. Otherwise, you can download it from github.

http://iplists.firehol.org/
Title: Re: FireHOL - firehol_level1
Post by: MysteryFCM on September 11, 2015, 09:49:26 AM
Nice one :)