IP blacklisting

4 posts / 0 new
Last post
dgingeri
dgingeri's picture
IP blacklisting

I know there is a function to totally block traffic to and from certain IP addresses on most routers.  However, many routers have very small limits (20 to 50) for that list, and in many cases can only be entered one at a time. 

I would like to put a list of about 300 IP addresses of known malware source sites into my WNR3500L.  I've had it about 4 months, but I haven't been able to really look into it, since I've been quite busy with family business over this time. 

(This router has outlasted my Belkin N+ router by 2 months, and so far has far better support.  They claimed to have sent me a replacement, but I never got it.  Then they had the gall to charge my credit card $130 for the replacement I never got.  I will never, ever buy Belkin again.  I bought the Netgear after I got the money back from their charge.)

Does the WNR3500L have functionality to enter a list of IP addresses like that, and have the capacity for me to enter 300+ addresses? 

I got this list by using the entries Spybot S&D put into my hosts file, putting them through a nslookup script, using Excel to remove duplicates, and then removing extraneous data using notepad.  It's a pretty good list.  I believe it will help tremendously in preventing things like fake antivirus and trojan infections on my family's machines, where I provide most of their support.  I can convince them to buy new routers to prevent this, then add the address list manually.

Striatum
Striatum's picture
I've read some post on

I've read some post on TomatoUSB forums that speak about that:

http://tomatousb.org/forum/t-252084/

Itseems that using TomatoUSb with Optware and installing MoBlock here (http://www.multics.minidns.net/tomato/) you can do some IP blacklisting..

It means instaling TomatoUSb or Toastman and Optware (see tuto on tomatousb site). I have Tomato and Optware installed,but never tried MoBlock.

dgingeri
dgingeri's picture
Thanks, that sounds useful.

Thanks, that sounds useful. Although, the second link doesn't come up. I'll look into it.

ca-raja
ca-raja's picture
Hi,

Hi,

Here's one solution I use. It will d/l a large list of IPs to blackhole...or if you're savvy, you can have it grab the list of IPs from a machine local to your network instead. The article below describes modifying the startup script in the admin tab.

http://www.dd-wrt.com/wiki/index.php/Blocking_URL's/IP's