WHITELIST = ''
# space-separated list of IPs manually blocked
BLACKLIST = ''
+# user-agents that should be blocked from bulk mode
+# (matched with startswith)
+UA_BLOCKLIST = ()
# time before a automatically blocked IP is allowed back
BLOCKCOOLOFF_PERIOD='1 hour'
for c in cur:
if c[0] not in WHITELIST and c[0] not in BLACKLIST:
- missing_agent = not c[2] or c[2].startswith('Java/1.')
+ # check for user agents that receive an immediate block
+ missing_agent = not c[2]
+ if not missing_agent:
+ for ua in UA_BLOCKLIST:
+ if c[2].startswith(ua):
+ missing_agent = True
+ break
if (missing_agent or c[1] > BLOCK_UPPER) and c[0] not in prevblocks:
newblocks.add(c[0])
if missing_agent:
deblockcandidates.add(ip)
for ip in prevbulks:
- if ip in bulkips:
- if bulkips[ip] > BLOCK_LIMIT:
- newblocks.add(ip)
- newlyblocked.append(ip)
+ if ip not in newblocks:
+ if ip in bulkips:
+ if bulkips[ip] > BLOCK_LIMIT:
+ newblocks.add(ip)
+ newlyblocked.append(ip)
+ else:
+ newbulks.add(ip)
+ del bulkips[ip]
else:
- newbulks.add(ip)
- del bulkips[ip]
- else:
- debulkcandidates.add(ip)
+ debulkcandidates.add(ip)
# cross-check deblock candidates
if deblockcandidates: