Mercurial > prosody-modules
annotate mod_firewall/scripts/spam-blocklists.pfw @ 5549:01a0b67a9afd
mod_http_oauth2: Add TODO about disabling password grant
Per recommendation in draft-ietf-oauth-security-topics-23 it should at
the very least be disabled by default.
However since this is used by the Snikket web portal some care needs to
be taken not to break this, unless it's already broken by other changes
to this module.
author | Kim Alvefur <zash@zash.se> |
---|---|
date | Fri, 16 Jun 2023 00:06:53 +0200 |
parents | d84757f9adcb |
children |
rev | line source |
---|---|
4146
bebc5740fc16
mod_firewall: Add jabberspam-simple-blocklist.pfw and spam-blocklists.pfw
Matthew Wild <mwild1@gmail.com>
parents:
diff
changeset
|
1 # This script depends on spam-blocking.pfw also being loaded |
bebc5740fc16
mod_firewall: Add jabberspam-simple-blocklist.pfw and spam-blocklists.pfw
Matthew Wild <mwild1@gmail.com>
parents:
diff
changeset
|
2 # Any traffic that is not explicitly blocked or allowed by other |
bebc5740fc16
mod_firewall: Add jabberspam-simple-blocklist.pfw and spam-blocklists.pfw
Matthew Wild <mwild1@gmail.com>
parents:
diff
changeset
|
3 # rules will be checked against the JabberSPAM server blocklist |
bebc5740fc16
mod_firewall: Add jabberspam-simple-blocklist.pfw and spam-blocklists.pfw
Matthew Wild <mwild1@gmail.com>
parents:
diff
changeset
|
4 |
bebc5740fc16
mod_firewall: Add jabberspam-simple-blocklist.pfw and spam-blocklists.pfw
Matthew Wild <mwild1@gmail.com>
parents:
diff
changeset
|
5 %LIST blocklist: https://cdn.jsdelivr.net/gh/jabberspam/blacklist/blacklist.txt |
bebc5740fc16
mod_firewall: Add jabberspam-simple-blocklist.pfw and spam-blocklists.pfw
Matthew Wild <mwild1@gmail.com>
parents:
diff
changeset
|
6 |
bebc5740fc16
mod_firewall: Add jabberspam-simple-blocklist.pfw and spam-blocklists.pfw
Matthew Wild <mwild1@gmail.com>
parents:
diff
changeset
|
7 ::user/spam_handle_unknown_custom |
bebc5740fc16
mod_firewall: Add jabberspam-simple-blocklist.pfw and spam-blocklists.pfw
Matthew Wild <mwild1@gmail.com>
parents:
diff
changeset
|
8 |
bebc5740fc16
mod_firewall: Add jabberspam-simple-blocklist.pfw and spam-blocklists.pfw
Matthew Wild <mwild1@gmail.com>
parents:
diff
changeset
|
9 CHECK LIST: blocklist contains $<@from|host> |
bebc5740fc16
mod_firewall: Add jabberspam-simple-blocklist.pfw and spam-blocklists.pfw
Matthew Wild <mwild1@gmail.com>
parents:
diff
changeset
|
10 BOUNCE=policy-violation (Your server is blocked due to spam) |
5532
d84757f9adcb
mod_firewall: scripts: spam-blocklists: Check sender and inviter of MUC invitations against blocklist
Matthew Wild <mwild1@gmail.com>
parents:
4146
diff
changeset
|
11 |
d84757f9adcb
mod_firewall: scripts: spam-blocklists: Check sender and inviter of MUC invitations against blocklist
Matthew Wild <mwild1@gmail.com>
parents:
4146
diff
changeset
|
12 ::user/spam_check_muc_invite_custom |
d84757f9adcb
mod_firewall: scripts: spam-blocklists: Check sender and inviter of MUC invitations against blocklist
Matthew Wild <mwild1@gmail.com>
parents:
4146
diff
changeset
|
13 |
d84757f9adcb
mod_firewall: scripts: spam-blocklists: Check sender and inviter of MUC invitations against blocklist
Matthew Wild <mwild1@gmail.com>
parents:
4146
diff
changeset
|
14 # Check the server we received the invitation from |
d84757f9adcb
mod_firewall: scripts: spam-blocklists: Check sender and inviter of MUC invitations against blocklist
Matthew Wild <mwild1@gmail.com>
parents:
4146
diff
changeset
|
15 CHECK LIST: blocklist contains $<@from|host> |
d84757f9adcb
mod_firewall: scripts: spam-blocklists: Check sender and inviter of MUC invitations against blocklist
Matthew Wild <mwild1@gmail.com>
parents:
4146
diff
changeset
|
16 BOUNCE=policy-violation (Your server is blocked due to spam) |
d84757f9adcb
mod_firewall: scripts: spam-blocklists: Check sender and inviter of MUC invitations against blocklist
Matthew Wild <mwild1@gmail.com>
parents:
4146
diff
changeset
|
17 |
d84757f9adcb
mod_firewall: scripts: spam-blocklists: Check sender and inviter of MUC invitations against blocklist
Matthew Wild <mwild1@gmail.com>
parents:
4146
diff
changeset
|
18 # Check the inviter's JID against the blocklist, too |
d84757f9adcb
mod_firewall: scripts: spam-blocklists: Check sender and inviter of MUC invitations against blocklist
Matthew Wild <mwild1@gmail.com>
parents:
4146
diff
changeset
|
19 CHECK LIST: blocklist contains $<{http://jabber.org/protocol/muc#user}x/invite@from|host> |
d84757f9adcb
mod_firewall: scripts: spam-blocklists: Check sender and inviter of MUC invitations against blocklist
Matthew Wild <mwild1@gmail.com>
parents:
4146
diff
changeset
|
20 BOUNCE=policy-violation (Your server is blocked due to spam) |