Update blocklist-update.sh

Added statement to return if there's no matching ip. We should not accept non-matching ip; returning to keep beíng proccessed (ie fail2ban).
This commit is contained in:
Alfonso 2020-04-11 10:44:21 +02:00 committed by GitHub
parent a0e9c6c7c3
commit 8348448448
No known key found for this signature in database
GPG Key ID: 4AEE18F83AFDEB23

View File

@ -97,6 +97,8 @@ then
# Create the one and only firewall rule
$IPTABLES_PATH -I $CHAINNAME -m set --match-set $CHAINNAME src -j $ACTION >>$MAILLOG 2>&1
fi
echo "Adding the return statement to the chain. We do not want to accept a non-matching ip; think about fail2ban" >>$MAILLOG
$IPTABLES_PATH -A $CHAINNAME -j RETURN >>$MAILLOG 2>&1
## Read all IPs from the downloaded IP list and fill up the ipset filter set
echo "" >>$MAILLOG