Maybe something to add because I ran into a mistake:

ExitPolicy is a first match szenario.
The reject rules for abuse reports and stuff has to be the first one,
afterwards your accept rules and then a reject *:*.

For exampe my current policy is:

ExitPolicy reject 5.133.182.0/24 # WebIron report
ExitPolicy reject 80.14.2.87/16 # [Ticket ID: 960950]
ExitPolicy reject 37.247.48.0/21 # #214673
ExitPolicy reject 62.67.194.130 # [Ticket ID: 869382]

ExitPolicy accept *:53        # DNS
ExitPolicy accept *:80        # HTTP
ExitPolicy accept *:8080      # HTTP
ExitPolicy accept *:443       # HTTPS
ExitPolicy reject *:*

~Josef

Am 16.11.2015 um 13:01 schrieb Tim Wilson-Brown - teor:
>
>> On 16 Nov 2015, at 22:58, Cristian Consonni <[email protected]
>> <mailto:[email protected]>> wrote:
>>
>> Ok, so you did block a range for a limited period. I will need to
>> learn how to do that.
>
> Try:
> ExitPolicy reject4 1.2.3.4/24:*
>
> There's an extensive description of ExitPolicy in the tor man page.
>
> Tim
>
> Tim Wilson-Brown (teor)
>
> teor2345 at gmail dot com
> PGP 968F094B
>
> teor at blah dot im
> OTR CAD08081 9755866D 89E2A06F E3558B7F B5A9D14F
>
>
>
> _______________________________________________
> tor-relays mailing list
> [email protected]
> https://lists.torproject.org/cgi-bin/mailman/listinfo/tor-relays

Attachment: signature.asc
Description: OpenPGP digital signature

_______________________________________________
tor-relays mailing list
[email protected]
https://lists.torproject.org/cgi-bin/mailman/listinfo/tor-relays

Reply via email to