Quantcast
Channel: phpBB.com
Viewing all articles
Browse latest Browse all 2255

[3.3.x] Support Forum • Re: What is going on? Is this some kind of widespread attack?

$
0
0
That's going to block known bots. Use separate rules you get up to 5.

Example:

1st Rule - reserve for "Skip" action. e.g. you can add rule for known bots like Google to skip the rest of the rules so they aren't getting blocked.

2nd rule - use for block action for specific traffic you want to block. For example you can block networks by ASN but you need to be careful with this. AWS has a lot of illegitimate bot traffic but blocking their entire network will also block Duckduckgo. I occasionally check Awstats for IP's with a lot of traffic, identify the network and if it's web host for example block by ASN. There is issues with this because it might be VPN.

3rd rule - This is for medium security, add multiple aggressive countries using "OR" and action is "interactive Challenge". Interactive Challenge requires user to complete captcha.

4th Rule - Whitelist countries using does not equal with "AND". Action is JS Challenge, this is the "checking your browser" page. Anybody that gets to rule that is not listed will get JS Challenge.

Statistics: Posted by thecoalman — Tue Jun 10, 2025 3:03 am



Viewing all articles
Browse latest Browse all 2255

Trending Articles