#!/bin/bash # # WANSEC IP Ranges - iptables/ipset rules # ASN: AS1421 # Generated: 2025-12-16 # Source: ScaniteX (https://scanitex.com) # # Usage: chmod +x this_script.sh && sudo ./this_script.sh # # Create IPv4 ipset ipset create wansec_v4 hash:net -exist ipset flush wansec_v4 # Add IPv4 ranges ipset add wansec_v4 199.38.232.0/24 ipset add wansec_v4 66.39.202.0/24 ipset add wansec_v4 199.101.95.0/24 ipset add wansec_v4 199.101.92.0/24 ipset add wansec_v4 162.216.96.0/21 ipset add wansec_v4 69.64.242.0/23 ipset add wansec_v4 69.64.250.0/24 ipset add wansec_v4 74.126.148.0/24 ipset add wansec_v4 66.39.201.0/24 ipset add wansec_v4 199.38.233.0/24 ipset add wansec_v4 199.101.94.0/24 ipset add wansec_v4 66.39.200.0/24 ipset add wansec_v4 69.64.240.0/24 ipset add wansec_v4 66.39.208.0/21 ipset add wansec_v4 66.39.203.0/24 ipset add wansec_v4 69.64.248.0/24 ipset add wansec_v4 199.47.192.0/24 ipset add wansec_v4 199.101.93.0/24 ipset add wansec_v4 66.39.192.0/19 ipset add wansec_v4 199.47.198.0/24 ipset add wansec_v4 66.220.58.0/24 ipset add wansec_v4 69.64.251.0/24 ipset add wansec_v4 66.39.195.0/24 ipset add wansec_v4 66.39.216.0/21 ipset add wansec_v4 199.47.199.0/24 ipset add wansec_v4 199.47.194.0/24 ipset add wansec_v4 69.64.244.0/23 ipset add wansec_v4 162.211.176.0/22 ipset add wansec_v4 199.47.195.0/24 ipset add wansec_v4 162.216.96.0/24 ipset add wansec_v4 199.38.235.0/24 ipset add wansec_v4 199.47.196.0/24 ipset add wansec_v4 66.39.204.0/22 ipset add wansec_v4 69.64.247.0/24 ipset add wansec_v4 38.247.184.0/21 ipset add wansec_v4 199.47.197.0/24 ipset add wansec_v4 162.216.100.0/22 ipset add wansec_v4 162.216.96.0/23 # Create IPv6 ipset ipset create wansec_v6 hash:net family inet6 -exist ipset flush wansec_v6 # Add IPv6 ranges ipset add wansec_v6 2001:4848:6000::/36 ipset add wansec_v6 2606:9100:4000::/36 ipset add wansec_v6 2606:9100:6000::/36 # Apply iptables rules (uncomment to use) # iptables -A INPUT -m set --match-set wansec_v4 src -j ACCEPT # iptables -A INPUT -m set --match-set wansec_v4 src -j DROP # ip6tables -A INPUT -m set --match-set wansec_v6 src -j ACCEPT # ip6tables -A INPUT -m set --match-set wansec_v6 src -j DROP echo "IP ranges for WANSEC loaded successfully!" echo "IPv4 ranges: 38" echo "IPv6 ranges: 3"