TOR blocklist retrieved incomplete
Posted: 20 Mar 2014, 20:10
Hello.
I am being hammered from anonymous TOR ips.
I have enabled the TOR blocklist and it's working.
I can read at lfd.log "Retrieved and blocking blocklist TOR IP address ranges"
But I am still being hammered with SQLInyections from that IPs.
When I inspect the iptables rules, I see that the TOR chain is incomplete, with 1961 entries. While at the torproject website the list is of arround 2200 IPs.
The amount of blocked IPs at iptables is never the same, varies with every update, but it's always hundreds less IPs than what the tor site provides.
The missing IPs at iptables are the last ones on the listing.
So I guess that the blocklist is not being completely inserted at iptables.
Can you confirm this issue?
Thanks for your time and concern.
I am being hammered from anonymous TOR ips.
I have enabled the TOR blocklist and it's working.
I can read at lfd.log "Retrieved and blocking blocklist TOR IP address ranges"
But I am still being hammered with SQLInyections from that IPs.
When I inspect the iptables rules, I see that the TOR chain is incomplete, with 1961 entries. While at the torproject website the list is of arround 2200 IPs.
The amount of blocked IPs at iptables is never the same, varies with every update, but it's always hundreds less IPs than what the tor site provides.
The missing IPs at iptables are the last ones on the listing.
So I guess that the blocklist is not being completely inserted at iptables.
Can you confirm this issue?
Thanks for your time and concern.