Results 1 to 6 of 6
  1. #1
    Untangler hitman's Avatar
    Join Date
    Oct 2008
    Location
    Cincinnati OH
    Posts
    69

    Default Any idea on how to mass IP Blocking (Blacklisting)

    Is it possible to add a blacklist of IP Address ranges to the UT Firewall? I have a need arising that has contractual agreements to block a large number of IP Addresses and I really do not want to have to put them in one by one. I have searched through the forums but have not had much luck on finding if this is possible through UT. The client really likes UT but with this new contract needs to know if this is possible or if a new product is needed.

    Similar post: http://forums.untangle.com/firewall/...cklisting.html

    Thanks everyone.
    Karl Hart
    www.cyberconsecurity.com

  2. #2
    Untangle Junkie dmorris's Avatar
    Join Date
    Nov 2006
    Location
    San Mateo, CA
    Posts
    11,691

    Default

    create the ruleset in your favorite text editor and then import them into the firewall.
    Attention: Support and help on the Untangle Forums is provided by volunteers and community members like yourself.
    If you need Untangle support please call or email support@untangle.com

  3. #3
    some dude hlarsen's Avatar
    Join Date
    Jul 2010
    Location
    sfba
    Posts
    1,318

    Default

    best thing to do would probably be to add a few rules the way you want them set up, then export the ruleset. from there you can take a look at how the file is laid out and figure out a way to automate entering the rest of them.
    Attention: Support on the Untangle Forums is provided by volunteers and community members.
    If you need official Untangle support please call or email support@untangle.com.

  4. #4
    Untangle Ninja sky-knight's Avatar
    Join Date
    Apr 2008
    Location
    Phoenix, AZ
    Posts
    16,913

    Default

    The firewall has an import feature written in JSON, if you can manipulate the IPs you want to block into a JSON format you could import them.

    Note to self, refresh the thread before replying. LOL
    Rob Sandling, BS:SWE, MCP
    Intouch Technology
    Phone: 480-272-9889
    rob@intouchtechllc.com

    UntangleAppliances.com
    Phone: 866-794-8879

  5. #5
    Master Untangler wharfratjoe's Avatar
    Join Date
    Dec 2008
    Location
    Southern California
    Posts
    412

    Default

    This may help:
    http://forums.untangle.com/firewall/...port-file.html

    Firewall Generating App:
    http://untangle.nu/gen/ --> Courtesy of WebFooL

    IP Blocks (great reference site):
    http://www.countryipblocks.net/
    Last edited by wharfratjoe; 06-18-2011 at 10:15 AM.

  6. #6
    Master Untangler jcoehoorn's Avatar
    Join Date
    Mar 2010
    Location
    York, NE
    Posts
    607

    Default

    You can use cidr notation if the addresses are contiguous, but last I heard you could only have one cidr address per rule while you could string multiple single addresses together with commas in the same rule.
    Four time Microsoft ASP.Net MVP managing an IBM System x3250 / X3440 / 8GB with Untangle 9.4 to protect 40Mbits for 450+ residential college students and associated staff and faculty

Posting Permissions

  • You may not post new threads
  • You may not post replies
  • You may not post attachments
  • You may not edit your posts
  •  

SEO by vBSEO 3.6.0 PL2