I.P Blocklists?

Soldato
Joined
30 Jul 2005
Posts
19,658
Location
Midlands
noticed vids recommending blocklists to use with *sense for filtering out ip's but i was wondering whats the use of these lists if the default wan firewall rule is to drop incoming connections?
 
The feeds are presumably a list of known botnet c&c servers, so preventing your clients reaching out to them can be helpful. Same with geo restrictions - if you never think you're going to need to connect to a Russian website then dropping outbound connections is a cheap way to add a very incremental level of security.
 
Last edited:
You can also use lists to block ad and tracker servers, using Unbound (built into *sense) or via plugins like AdGuard Home. You didn't specify what the lists were blocking, so I thought I'd add this in. Blocking almost all ads and trackers at the DNS level is not just useful, it's a must imo.
 
Back
Top Bottom