main.yml 12 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291292293294295296297298299300301302303304305306307308309310311312313314315316317318319320321322323324325326327328329330331332333334335336337338339340341342343344345346347348349350351352353354355356357358359360361362363364365366367368369370371372373374375376377378379380381382383384385386387388389390391392393394395396397398399400401402403404405406407408409410411412413414415416417418419420421422423424425426427428429430431432433434435436437438439440441442443444445446447448449450451452453454455456457458459460461462463464465466467468469470471472473474475476477478479480481482483484485486487488489490491492493494495496497498499500501502503504505506507508509
  1. ---
  2. geo_ipdeny_base_url: "https://www.ipdeny.com/ipblocks/data/aggregated"
  3. geo_nft_table_dir: "/etc/nftables.d"
  4. geo_nft_file: "/etc/nftables.d/geo-block.nft"
  5. # Set this to a directory containing pre-downloaded {cc}.zone files when the
  6. # target host has no outbound internet access. Leave empty to download live.
  7. geo_zone_files_dir: ""
  8. geo_countries:
  9. - code: AD # Andorra
  10. blocked: true
  11. - code: AE # United Arab Emirates
  12. blocked: true
  13. - code: AF # Afghanistan
  14. blocked: true
  15. - code: AG # Antigua and Barbuda
  16. blocked: true
  17. - code: AI # Anguilla
  18. blocked: true
  19. - code: AL # Albania
  20. blocked: true
  21. - code: AM # Armenia
  22. blocked: true
  23. - code: AO # Angola
  24. blocked: true
  25. - code: AQ # Antarctica
  26. blocked: true
  27. - code: AR # Argentina
  28. blocked: true
  29. - code: AS # American Samoa
  30. blocked: true
  31. - code: AT # Austria
  32. blocked: true
  33. - code: AU # Australia
  34. blocked: true
  35. - code: AW # Aruba
  36. blocked: true
  37. - code: AX # Aland Islands
  38. blocked: true
  39. - code: AZ # Azerbaijan
  40. blocked: true
  41. - code: BA # Bosnia and Herzegovina
  42. blocked: true
  43. - code: BB # Barbados
  44. blocked: true
  45. - code: BD # Bangladesh
  46. blocked: true
  47. - code: BE # Belgium
  48. blocked: true
  49. - code: BF # Burkina Faso
  50. blocked: true
  51. - code: BG # Bulgaria
  52. blocked: true
  53. - code: BH # Bahrain
  54. blocked: true
  55. - code: BI # Burundi
  56. blocked: true
  57. - code: BJ # Benin
  58. blocked: true
  59. - code: BL # Saint Barthelemy
  60. blocked: true
  61. - code: BM # Bermuda
  62. blocked: true
  63. - code: BN # Brunei Darussalam
  64. blocked: true
  65. - code: BO # Bolivia
  66. blocked: true
  67. - code: BQ # Bonaire
  68. blocked: true
  69. - code: BR # Brazil
  70. blocked: true
  71. - code: BS # Bahamas
  72. blocked: true
  73. - code: BT # Bhutan
  74. blocked: true
  75. - code: BV # Bouvet Island — no ipdeny zone file
  76. blocked: false
  77. - code: BW # Botswana
  78. blocked: true
  79. - code: BY # Belarus
  80. blocked: true
  81. - code: BZ # Belize
  82. blocked: true
  83. - code: CA # Canada
  84. blocked: true
  85. - code: CC # Cocos Islands
  86. blocked: true
  87. - code: CD # Dem. Rep. Congo
  88. blocked: true
  89. - code: CF # Central African Republic
  90. blocked: true
  91. - code: CG # Congo
  92. blocked: true
  93. - code: CH # Switzerland
  94. blocked: true
  95. - code: CI # Cote d'Ivoire
  96. blocked: true
  97. - code: CK # Cook Islands
  98. blocked: true
  99. - code: CL # Chile
  100. blocked: true
  101. - code: CM # Cameroon
  102. blocked: true
  103. - code: CN # China
  104. blocked: true
  105. - code: CO # Colombia
  106. blocked: true
  107. - code: CR # Costa Rica
  108. blocked: true
  109. - code: CU # Cuba
  110. blocked: true
  111. - code: CV # Cabo Verde
  112. blocked: true
  113. - code: CW # Curacao
  114. blocked: true
  115. - code: CX # Christmas Island — no ipdeny zone file
  116. blocked: false
  117. - code: CY # Cyprus
  118. blocked: true
  119. - code: CZ # Czechia
  120. blocked: true
  121. - code: DE # Germany
  122. blocked: true
  123. - code: DJ # Djibouti
  124. blocked: true
  125. - code: DK # Denmark
  126. blocked: true
  127. - code: DM # Dominica
  128. blocked: true
  129. - code: DO # Dominican Republic
  130. blocked: true
  131. - code: DZ # Algeria
  132. blocked: true
  133. - code: EC # Ecuador
  134. blocked: true
  135. - code: EE # Estonia
  136. blocked: true
  137. - code: EG # Egypt
  138. blocked: true
  139. - code: EH # Western Sahara — no ipdeny zone file
  140. blocked: false
  141. - code: ER # Eritrea
  142. blocked: true
  143. - code: ES # Spain
  144. blocked: true
  145. - code: ET # Ethiopia
  146. blocked: true
  147. - code: FI # Finland
  148. blocked: true
  149. - code: FJ # Fiji
  150. blocked: true
  151. - code: FK # Falkland Islands
  152. blocked: true
  153. - code: FM # Micronesia
  154. blocked: true
  155. - code: FO # Faroe Islands
  156. blocked: true
  157. - code: FR # France
  158. blocked: true
  159. - code: GA # Gabon
  160. blocked: true
  161. - code: GB # United Kingdom
  162. blocked: true
  163. - code: GD # Grenada
  164. blocked: true
  165. - code: GE # Georgia
  166. blocked: true
  167. - code: GF # French Guiana
  168. blocked: true
  169. - code: GG # Guernsey
  170. blocked: true
  171. - code: GH # Ghana
  172. blocked: true
  173. - code: GI # Gibraltar
  174. blocked: true
  175. - code: GL # Greenland
  176. blocked: true
  177. - code: GM # Gambia
  178. blocked: true
  179. - code: GN # Guinea
  180. blocked: true
  181. - code: GP # Guadeloupe
  182. blocked: true
  183. - code: GQ # Equatorial Guinea
  184. blocked: true
  185. - code: GR # Greece
  186. blocked: true
  187. - code: GS # South Georgia — no ipdeny zone file
  188. blocked: false
  189. - code: GT # Guatemala
  190. blocked: true
  191. - code: GU # Guam
  192. blocked: true
  193. - code: GW # Guinea-Bissau
  194. blocked: true
  195. - code: GY # Guyana
  196. blocked: true
  197. - code: HK # Hong Kong
  198. blocked: true
  199. - code: HM # Heard Island — no ipdeny zone file
  200. blocked: false
  201. - code: HN # Honduras
  202. blocked: true
  203. - code: HR # Croatia
  204. blocked: true
  205. - code: HT # Haiti
  206. blocked: true
  207. - code: HU # Hungary
  208. blocked: true
  209. - code: ID # Indonesia
  210. blocked: true
  211. - code: IE # Ireland
  212. blocked: true
  213. - code: IL # Israel
  214. blocked: true
  215. - code: IM # Isle of Man
  216. blocked: true
  217. - code: IN # India
  218. blocked: true
  219. - code: IO # British Indian Ocean Territory
  220. blocked: true
  221. - code: IQ # Iraq
  222. blocked: true
  223. - code: IR # Iran
  224. blocked: true
  225. - code: IS # Iceland
  226. blocked: true
  227. - code: IT # Italy
  228. blocked: true
  229. - code: JE # Jersey
  230. blocked: true
  231. - code: JM # Jamaica
  232. blocked: true
  233. - code: JO # Jordan
  234. blocked: true
  235. - code: JP # Japan
  236. blocked: true
  237. - code: KE # Kenya
  238. blocked: true
  239. - code: KG # Kyrgyzstan
  240. blocked: true
  241. - code: KH # Cambodia
  242. blocked: true
  243. - code: KI # Kiribati
  244. blocked: true
  245. - code: KM # Comoros
  246. blocked: true
  247. - code: KN # Saint Kitts and Nevis
  248. blocked: true
  249. - code: KP # North Korea
  250. blocked: true
  251. - code: KR # South Korea
  252. blocked: true
  253. - code: KW # Kuwait
  254. blocked: true
  255. - code: KY # Cayman Islands
  256. blocked: true
  257. - code: KZ # Kazakhstan
  258. blocked: true
  259. - code: LA # Laos
  260. blocked: true
  261. - code: LB # Lebanon
  262. blocked: true
  263. - code: LC # Saint Lucia
  264. blocked: true
  265. - code: LI # Liechtenstein
  266. blocked: true
  267. - code: LK # Sri Lanka
  268. blocked: true
  269. - code: LR # Liberia
  270. blocked: true
  271. - code: LS # Lesotho
  272. blocked: true
  273. - code: LT # Lithuania
  274. blocked: true
  275. - code: LU # Luxembourg
  276. blocked: true
  277. - code: LV # Latvia
  278. blocked: true
  279. - code: LY # Libya
  280. blocked: true
  281. - code: MA # Morocco
  282. blocked: true
  283. - code: MC # Monaco
  284. blocked: true
  285. - code: MD # Moldova
  286. blocked: true
  287. - code: ME # Montenegro
  288. blocked: true
  289. - code: MF # Saint Martin
  290. blocked: true
  291. - code: MG # Madagascar
  292. blocked: true
  293. - code: MH # Marshall Islands
  294. blocked: true
  295. - code: MK # North Macedonia
  296. blocked: true
  297. - code: ML # Mali
  298. blocked: true
  299. - code: MM # Myanmar
  300. blocked: true
  301. - code: MN # Mongolia
  302. blocked: true
  303. - code: MO # Macao
  304. blocked: true
  305. - code: MP # Northern Mariana Islands
  306. blocked: true
  307. - code: MQ # Martinique
  308. blocked: true
  309. - code: MR # Mauritania
  310. blocked: true
  311. - code: MS # Montserrat
  312. blocked: true
  313. - code: MT # Malta
  314. blocked: true
  315. - code: MU # Mauritius
  316. blocked: true
  317. - code: MV # Maldives
  318. blocked: true
  319. - code: MW # Malawi
  320. blocked: true
  321. - code: MX # Mexico
  322. blocked: true
  323. - code: MY # Malaysia
  324. blocked: true
  325. - code: MZ # Mozambique
  326. blocked: true
  327. - code: NA # Namibia
  328. blocked: true
  329. - code: NC # New Caledonia
  330. blocked: true
  331. - code: NE # Niger
  332. blocked: true
  333. - code: NF # Norfolk Island
  334. blocked: true
  335. - code: NG # Nigeria
  336. blocked: true
  337. - code: NI # Nicaragua
  338. blocked: true
  339. - code: NL # Netherlands
  340. blocked: true
  341. - code: "NO" # Norway
  342. blocked: true
  343. - code: NP # Nepal
  344. blocked: true
  345. - code: NR # Nauru
  346. blocked: true
  347. - code: NU # Niue
  348. blocked: true
  349. - code: NZ # New Zealand
  350. blocked: true
  351. - code: OM # Oman
  352. blocked: true
  353. - code: PA # Panama
  354. blocked: true
  355. - code: PE # Peru
  356. blocked: true
  357. - code: PF # French Polynesia
  358. blocked: true
  359. - code: PG # Papua New Guinea
  360. blocked: true
  361. - code: PH # Philippines
  362. blocked: true
  363. - code: PK # Pakistan
  364. blocked: true
  365. - code: PL # Poland
  366. blocked: true
  367. - code: PM # Saint Pierre and Miquelon
  368. blocked: true
  369. - code: PN # Pitcairn — no ipdeny zone file
  370. blocked: false
  371. - code: PR # Puerto Rico
  372. blocked: true
  373. - code: PS # Palestine
  374. blocked: true
  375. - code: PT # Portugal
  376. blocked: true
  377. - code: PW # Palau
  378. blocked: true
  379. - code: PY # Paraguay
  380. blocked: true
  381. - code: QA # Qatar
  382. blocked: true
  383. - code: RE # Reunion
  384. blocked: true
  385. - code: RO # Romania
  386. blocked: true
  387. - code: RS # Serbia
  388. blocked: true
  389. - code: RU # Russia
  390. blocked: true
  391. - code: RW # Rwanda
  392. blocked: true
  393. - code: SA # Saudi Arabia
  394. blocked: true
  395. - code: SB # Solomon Islands
  396. blocked: true
  397. - code: SC # Seychelles
  398. blocked: true
  399. - code: SD # Sudan
  400. blocked: true
  401. - code: SE # Sweden
  402. blocked: true
  403. - code: SG # Singapore
  404. blocked: true
  405. - code: SH # Saint Helena — no ipdeny zone file
  406. blocked: false
  407. - code: SI # Slovenia
  408. blocked: true
  409. - code: SJ # Svalbard and Jan Mayen — no ipdeny zone file
  410. blocked: false
  411. - code: SK # Slovakia
  412. blocked: true
  413. - code: SL # Sierra Leone
  414. blocked: true
  415. - code: SM # San Marino
  416. blocked: true
  417. - code: SN # Senegal
  418. blocked: true
  419. - code: SO # Somalia
  420. blocked: true
  421. - code: SR # Suriname
  422. blocked: true
  423. - code: SS # South Sudan
  424. blocked: true
  425. - code: ST # Sao Tome and Principe
  426. blocked: true
  427. - code: SV # El Salvador
  428. blocked: true
  429. - code: SX # Sint Maarten
  430. blocked: true
  431. - code: SY # Syria
  432. blocked: true
  433. - code: SZ # Eswatini
  434. blocked: true
  435. - code: TC # Turks and Caicos Islands
  436. blocked: true
  437. - code: TD # Chad
  438. blocked: true
  439. - code: TF # French Southern Territories — no ipdeny zone file
  440. blocked: false
  441. - code: TG # Togo
  442. blocked: true
  443. - code: TH # Thailand
  444. blocked: true
  445. - code: TJ # Tajikistan
  446. blocked: true
  447. - code: TK # Tokelau
  448. blocked: true
  449. - code: TL # Timor-Leste
  450. blocked: true
  451. - code: TM # Turkmenistan
  452. blocked: true
  453. - code: TN # Tunisia
  454. blocked: true
  455. - code: TO # Tonga
  456. blocked: true
  457. - code: TR # Turkey
  458. blocked: true
  459. - code: TT # Trinidad and Tobago
  460. blocked: true
  461. - code: TV # Tuvalu
  462. blocked: true
  463. - code: TW # Taiwan
  464. blocked: true
  465. - code: TZ # Tanzania
  466. blocked: true
  467. - code: UA # Ukraine
  468. blocked: true
  469. - code: UG # Uganda
  470. blocked: true
  471. - code: UM # US Minor Outlying Islands
  472. blocked: true
  473. - code: US # United States
  474. blocked: false
  475. - code: UY # Uruguay
  476. blocked: true
  477. - code: UZ # Uzbekistan
  478. blocked: true
  479. - code: VA # Vatican City
  480. blocked: true
  481. - code: VC # Saint Vincent and the Grenadines
  482. blocked: true
  483. - code: VE # Venezuela
  484. blocked: true
  485. - code: VG # British Virgin Islands
  486. blocked: true
  487. - code: VI # US Virgin Islands
  488. blocked: true
  489. - code: VN # Vietnam
  490. blocked: true
  491. - code: VU # Vanuatu
  492. blocked: true
  493. - code: WF # Wallis and Futuna
  494. blocked: true
  495. - code: WS # Samoa
  496. blocked: true
  497. - code: XK # Kosovo — no ipdeny zone file
  498. blocked: false
  499. - code: YE # Yemen
  500. blocked: true
  501. - code: YT # Mayotte
  502. blocked: true
  503. - code: ZA # South Africa
  504. blocked: true
  505. - code: ZM # Zambia
  506. blocked: true
  507. - code: ZW # Zimbabwe
  508. blocked: true