Pic related. I want to block all of China from my network services. How do I do that?
Get a list of all IP ranges registered in China and then run a script to block them with iptables
>>61475829
Bump. The Chinkskids keep polluting my logs like they do their rivers.
Host something nasty about CCP. You can badmouth chinese all you want, but only by touching their masters will you get blacklisted.
>>61475829
Get GeoIP database from MaxMind
https://www.maxmind.com/
Filter out IP ranges associated with China.
>>61475905
Even better, badmouth CCP when a connection from a Chinese address is made.
>>61475898
Thanks I found this and similar sites
http://www.nirsoft.net/countryip/cn.html
Maybe a simple shell script gets the most recent China list, puts it in a PF table, and reloads the firewall run on cron?
>>61475905
>>61475929
Would be interested in spitting out some randomly generated "ding ping chong" gibberish. Or maybe redirecting all China requests to something like google.cn/q=how+to+join+farung+gong
>>61476013
Google search and other services are banned in China. Their own search engines are probably filterd to no end. It would be easier to host redpill material yourself.
>>61476122
this I can do. what is the single most banned book in china, and how would I configure it so that all chinamen download it over http when they try to connect to any port?
was originally hoping for a plug-n-play solution like a fail2bad for chinks. but if no such solution exists I might as well make them commit thoughtcrimes while I block them
most recently:
123.183.209.140
116.31.116.49
there are a couple from russia and the baltics too, but the chinks are the main probrem
Is that Chinese Barnacules?
>>61475829
There's a GeoIP plugin to iptables or something.
I've never used it but know it exists.
If you run pfsense you can just install pfblocker and tick the boxes of countries you want blocked - inbound, outbound, or both.
>>61477545
nice. I ended up doing this (for russia too)
go to
https://www.countryipblocks.net/country_selection.php
and select ching
paste info /etc/pf.cn
add the pf table:table <china> persist file "/etc/pf.cn"
table <russia> persist file "/etc/pf.ru"
andblock in quick on egress from <china> to any
block in quick on egress from <russia> to any
i do want to figure out something with rdr-to rules to a virtual web host with banned books
did you know that alice in wonderland is banned in chin?
>>61476246
I'm pretty sure fail2ban itself can block Chinese IP ranges
iptables - I INPUT 1 -s <some chink IP range> -j DROP