SeenSecure Help

Listas de IPs

IP Lists

IP-Listen

Listes d'IP

Control manual absoluto del acceso: permite o bloquea IPs específicas con máxima prioridad sobre todas las demás reglas del firewall.

Absolute manual access control: allow or block specific IPs with the highest priority over all other firewall rules.

Absolute manuelle Zugriffskontrolle: Erlaube oder blockiere bestimmte IPs mit höchster Priorität über alle anderen Firewall-Regeln.

Contrôle d'accès manuel absolu : autorisez ou bloquez des IP spécifiques avec la plus haute priorité sur toutes les autres règles du pare-feu.

✅ Allowlist (Lista Blanca)✅ Allowlist✅ Allowlist (Positivliste)✅ Allowlist (Liste Blanche)

La Allowlist contiene direcciones IP que siempre tienen acceso garantizado a tu sitio. Las IPs en esta lista se evalúan primero, antes que cualquier otra regla del firewall, y anulan absolutamente todo: Blocklist, Geo Blocking, Rate Limiting, Threat Intelligence y el resto de protecciones.

The Allowlist contains IP addresses that always have guaranteed access to your site. IPs in this list are evaluated first, before any other firewall rule, and override absolutely everything: Blocklist, Geo Blocking, Rate Limiting, Threat Intelligence, and all other protections.

Die Allowlist enthält IP-Adressen, die immer garantierten Zugriff auf Ihre Website haben. IPs in dieser Liste werden zuerst ausgewertet, vor allen anderen Firewall-Regeln, und überschreiben absolut alles: Blocklist, Geo-Blocking, Rate Limiting, Threat Intelligence und alle anderen Schutzmaßnahmen.

L'Allowlist contient des adresses IP qui ont toujours un accès garanti à votre site. Les IP de cette liste sont évaluées en premier, avant toute autre règle du pare-feu, et outrepassent absolument tout : Blocklist, Géo-Blocage, Rate Limiting, Threat Intelligence et toutes les autres protections.

📋 Características clave📋 Key features📋 Hauptmerkmale📋 Caractéristiques clés

  • Prioridad máxima: Se evalúa antes que cualquier otra regla
  • Highest priority: Evaluated before any other rule
  • Höchste Priorität: Wird vor allen anderen Regeln ausgewertet
  • Priorité maximale : Évaluée avant toute autre règle
  • Anula todo: Incluso IPs en Blocklist pasan si están en Allowlist
  • Overrides everything: Even IPs in the Blocklist pass if they are in the Allowlist
  • Überschreibt alles: Selbst IPs in der Blocklist werden durchgelassen, wenn sie in der Allowlist stehen
  • Remplace tout : Même les IP dans la Blocklist passent si elles sont dans l'Allowlist
  • IPs individuales y CIDR: Soporta direcciones sueltas y rangos completos
  • Individual IPs and CIDR: Supports single addresses and full ranges
  • Einzelne IPs und CIDR: Unterstützt einzelne Adressen und vollständige Bereiche
  • IP individuelles et CIDR : Prend en charge les adresses uniques et les plages complètes
  • Ideal para: Oficinas, VPNs corporativas, servicios de monitoreo, APIs confiables
  • Ideal for: Offices, corporate VPNs, monitoring services, trusted APIs
  • Ideal für: Büros, Unternehmens-VPNs, Überwachungsdienste, vertrauenswürdige APIs
  • Idéal pour : Bureaux, VPN d'entreprise, services de surveillance, API de confiance

✅ Casos de uso✅ Use cases✅ Anwendungsfälle✅ Cas d'utilisation

  • 🏢 IP de oficina principal para evitar bloqueos por intentos fallidos de login
  • 🏢 Main office IP to avoid blocks from failed login attempts
  • 🏢 Hauptbüro-IP, um Sperren durch fehlgeschlagene Anmeldeversuche zu vermeiden
  • 🏢 IP du bureau principal pour éviter les blocages dus aux tentatives de connexion échouées
  • 🌐 Rango VPN corporativo (198.51.100.0/24) para toda la empresa
  • 🌐 Corporate VPN range (198.51.100.0/24) for the whole company
  • 🌐 Unternehmens-VPN-Bereich (198.51.100.0/24) für das gesamte Unternehmen
  • 🌐 Plage VPN d'entreprise (198.51.100.0/24) pour toute la société
  • 🔗 API externa de confianza que necesita acceso 24/7
  • 🔗 Trusted external API that needs 24/7 access
  • 🔗 Vertrauenswürdige externe API, die 24/7-Zugriff benötigt
  • 🔗 API externe de confiance nécessitant un accès 24h/24 et 7j/7
  • 📊 Servicio de monitoreo (uptime checking) sin falsos positivos
  • 📊 Monitoring service (uptime checking) without false positives
  • 📊 Überwachungsdienst (Uptime-Check) ohne Fehlalarme
  • 📊 Service de surveillance (vérification de disponibilité) sans faux positifs

📝 Formato soportado📝 Supported format📝 Unterstütztes Format📝 Format pris en charge

▪ IP individual: 203.0.113.10 ▪ Rango /24: 198.51.100.0/24 (256 IPs) ▪ Rango /16: 192.168.0.0/16 (65,536 IPs) ▪ Rango /8: 10.0.0.0/8 (16M+ IPs)
💡 Recomendación: Añade siempre tu IP actual a la Allowlist antes de activar bloqueos para evitar bloquearte accidentalmente. 💡 Recommendation: Always add your current IP to the Allowlist before enabling blocks to avoid accidentally locking yourself out. 💡 Empfehlung: Fügen Sie Ihre aktuelle IP immer zur Allowlist hinzu, bevor Sie Sperren aktivieren, um sich nicht versehentlich selbst auszusperren. 💡 Recommandation : Ajoutez toujours votre IP actuelle à l'Allowlist avant d'activer des blocages pour éviter de vous verrouiller accidentellement.

🚫 Blocklist (Lista Negra)🚫 Blocklist🚫 Blocklist (Sperrliste)🚫 Blocklist (Liste Noire)

La Blocklist contiene direcciones IP que siempre son bloqueadas y no pueden acceder al sitio bajo ninguna circunstancia, a menos que estén también en la Allowlist. Se aplica inmediatamente después de la Allowlist en la cadena de protección del firewall.

The Blocklist contains IP addresses that are always blocked and cannot access the site under any circumstances, unless they are also in the Allowlist. It is applied immediately after the Allowlist in the firewall protection chain.

Die Blocklist enthält IP-Adressen, die immer gesperrt sind und unter keinen Umständen auf die Website zugreifen können, es sei denn, sie befinden sich auch in der Allowlist. Sie wird unmittelbar nach der Allowlist in der Firewall-Schutzkette angewendet.

La Blocklist contient des adresses IP qui sont toujours bloquées et ne peuvent accéder au site en aucune circonstance, à moins qu'elles ne soient également dans l'Allowlist. Elle est appliquée immédiatement après l'Allowlist dans la chaîne de protection du pare-feu.

📋 Características clave📋 Key features📋 Hauptmerkmale📋 Caractéristiques clés

  • Alta prioridad: Se aplica antes que Geo Blocking, Rate Limiting y Threat Intelligence
  • High priority: Applied before Geo Blocking, Rate Limiting, and Threat Intelligence
  • Hohe Priorität: Wird vor Geo-Blocking, Rate Limiting und Threat Intelligence angewendet
  • Haute priorité : Appliquée avant le Géo-Blocage, le Rate Limiting et la Threat Intelligence
  • Puede ser anulada: Allowlist siempre prevalece sobre Blocklist
  • Can be overridden: Allowlist always takes precedence over Blocklist
  • Kann überschrieben werden: Die Allowlist hat immer Vorrang vor der Blocklist
  • Peut être remplacée : L'Allowlist prévaut toujours sur la Blocklist
  • IPs individuales y CIDR: Soporta direcciones sueltas y rangos completos
  • Individual IPs and CIDR: Supports single addresses and full ranges
  • Einzelne IPs und CIDR: Unterstützt einzelne Adressen und vollständige Bereiche
  • IP individuelles et CIDR : Prend en charge les adresses uniques et les plages complètes
  • Ideal para: Atacantes conocidos, rangos maliciosos, IPs de scraping abusivo
  • Ideal for: Known attackers, malicious ranges, abusive scraping IPs
  • Ideal für: Bekannte Angreifer, bösartige Bereiche, missbräuchliche Scraping-IPs
  • Idéal pour : Attaquants connus, plages malveillantes, IP de scraping abusif

🚨 Casos de uso🚨 Use cases🚨 Anwendungsfälle🚨 Cas d'utilisation

  • 🦠 Atacante conocido identificado en ataques previos
  • 🦠 Known attacker identified in previous attacks
  • 🦠 Bekannter Angreifer, der bei früheren Angriffen identifiziert wurde
  • 🦠 Attaquant connu identifié lors d'attaques précédentes
  • 🌍 Rango completo perteneciente a una botnet (192.0.2.0/24)
  • 🌍 Full range belonging to a botnet (192.0.2.0/24)
  • 🌍 Vollständiger Bereich, der zu einem Botnetz gehört (192.0.2.0/24)
  • 🌍 Plage complète appartenant à un botnet (192.0.2.0/24)
  • 🤖 Bot de scraping que descarga contenido masivamente
  • 🤖 Scraping bot that downloads content massively
  • 🤖 Scraping-Bot, der massenhaft Inhalte herunterlädt
  • 🤖 Bot de scraping qui télécharge massivement du contenu
  • 🔨 IPs con intentos repetidos de fuerza bruta en login
  • 🔨 IPs with repeated brute-force login attempts
  • 🔨 IPs mit wiederholten Brute-Force-Anmeldeversuchen
  • 🔨 IP avec tentatives répétées de force brute sur la connexion

⚠️ Precauciones⚠️ Precautions⚠️ Vorsichtsmaßnahmen⚠️ Précautions

  • 🔴 Usa rangos CIDR grandes solo si estás seguro de que todo el rango es malicioso
  • 🔴 Only use large CIDR ranges if you are sure the entire range is malicious
  • 🔴 Verwenden Sie große CIDR-Bereiche nur, wenn Sie sicher sind, dass der gesamte Bereich bösartig ist
  • 🔴 N'utilisez de grandes plages CIDR que si vous êtes sûr que la totalité de la plage est malveillante
  • 📈 Demasiadas IPs pueden impactar el rendimiento (especialmente rangos /16 o /8)
  • 📈 Too many IPs can impact performance (especially /16 or /8 ranges)
  • 📈 Zu viele IPs können die Leistung beeinträchtigen (insbesondere /16- oder /8-Bereiche)
  • 📈 Trop d'IP peuvent avoir un impact sur les performances (en particulier les plages /16 ou /8)
  • ✅ Verifica en Traffic Logs antes de bloquear un rango completo
  • ✅ Verify in Traffic Logs before blocking an entire range
  • ✅ Überprüfen Sie in den Traffic-Logs, bevor Sie einen gesamten Bereich sperren
  • ✅ Vérifiez dans les Traffic Logs avant de bloquer une plage entière

🔗 Relación con la Gestión de IPs (RULES)🔗 Relation to IP Management (RULES)🔗 Beziehung zur IP-Verwaltung (RULES)🔗 Relation avec la Gestion des IP (RULES)

Las IP Lists del firewall y la página de Gestión de IPs (fuente RULES) están estrechamente relacionadas pero tienen propósitos distintos:

The firewall IP Lists and the IP Management page (RULES source) are closely related but serve different purposes:

Die Firewall-IP-Listen und die IP-Verwaltungsseite (RULES-Quelle) sind eng miteinander verbunden, haben aber unterschiedliche Zwecke:

Les listes d'IP du pare-feu et la page de Gestion des IP (source RULES) sont étroitement liées mais ont des objectifs différents :

🧾 IP Lists (Firewall)🧾 IP Lists (Firewall tab)🧾 IP-Listen (Firewall-Tab)🧾 Listes d'IP (onglet Firewall)

Listas manuales estáticas que gestionas directamente. Tienen máxima prioridad en la cadena del firewall. Son configuración permanente que solo cambia cuando tú la editas.

Static manual lists that you manage directly. They have the highest priority in the firewall chain. They are permanent configuration that only changes when you edit them.

Statische manuelle Listen, die Sie direkt verwalten. Sie haben die höchste Priorität in der Firewall-Kette. Sie sind eine dauerhafte Konfiguration, die sich nur ändert, wenn Sie sie bearbeiten.

Listes manuelles statiques que vous gérez directement. Elles ont la plus haute priorité dans la chaîne du pare-feu. Ce sont des configurations permanentes qui ne changent que lorsque vous les modifiez.

📋 IP Management (RULES)📋 IP Management (RULES)📋 IP-Verwaltung (RULES)📋 Gestion des IP (RULES)

Lista dinámica de IPs bloqueadas automáticamente por las protecciones del firewall (Anti-Inyección, RCP, etc.). Todas las IPs aquí tienen estado "Blocked" y expiran automáticamente (generalmente 2 horas). Puedes hacerlas permanentes moviéndolas a la Blocklist del firewall.

Dynamic list of IPs automatically blocked by the firewall protections (Anti-Injection, RCP, etc.). All IPs here have a "Blocked" status and expire automatically (usually 2 hours). You can make them permanent by moving them to the firewall Blocklist.

Dynamische Liste von IPs, die automatisch von den Firewall-Schutzfunktionen (Anti-Injection, RCP usw.) gesperrt wurden. Alle IPs haben hier den Status "Blocked" und laufen automatisch ab (normalerweise 2 Stunden). Sie können sie dauerhaft machen, indem Sie sie in die Firewall-Blocklist verschieben.

Liste dynamique des IP bloquées automatiquement par les protections du pare-feu (Anti-Injection, RCP, etc.). Toutes les IP ont ici un statut "Blocked" et expirent automatiquement (généralement 2 heures). Vous pouvez les rendre permanentes en les déplaçant vers la Blocklist du pare-feu.

💡 Diferencia clave: IP Lists son manuales y permanentes. IP Management con fuente RULES es automático y temporal. Ambas conviven: usa IP Lists para control fijo y RULES para bloqueos temporales automáticos. 💡 Key difference: IP Lists are manual and permanent. IP Management with RULES source is automatic and temporary. Both coexist: use IP Lists for fixed control and RULES for automatic temporary blocks. 💡 Hauptunterschied: IP-Listen sind manuell und dauerhaft. Die IP-Verwaltung mit der Quelle RULES ist automatisch und temporär. Beide koexistieren: Verwenden Sie IP-Listen für feste Kontrolle und RULES für automatische temporäre Sperren. 💡 Différence clé : Les listes d'IP sont manuelles et permanentes. La Gestion des IP avec la source RULES est automatique et temporaire. Les deux coexistent : utilisez les listes d'IP pour un contrôle fixe et RULES pour les blocages temporaires automatiques.

⚙️ Rendimiento y escalabilidad⚙️ Performance and scalability⚙️ Leistung und Skalierbarkeit⚙️ Performance et évolutivité

Cada IP o rango CIDR en las listas se evalúa en cada petición HTTP. Con pocas entradas (decenas o centenas) el impacto es mínimo. Sin embargo, rangos muy grandes o listas con miles de entradas pueden ralentizar el sitio:

Each IP or CIDR range in the lists is evaluated on every HTTP request. With a few entries (tens or hundreds) the impact is minimal. However, very large ranges or lists with thousands of entries can slow down the site:

Jede IP oder jeder CIDR-Bereich in den Listen wird bei jeder HTTP-Anfrage ausgewertet. Bei wenigen Einträgen (Zehner oder Hunderter) sind die Auswirkungen minimal. Sehr große Bereiche oder Listen mit Tausenden von Einträgen können die Website jedoch verlangsamen:

Chaque IP ou plage CIDR dans les listes est évaluée à chaque requête HTTP. Avec quelques entrées (dizaines ou centaines), l'impact est minimal. Cependant, de très grandes plages ou des listes avec des milliers d'entrées peuvent ralentir le site :

✅ Buen rendimiento✅ Good performance✅ Gute Leistung✅ Bonne performance

IPs individuales: impacto despreciable
Rangos /24: impacto mínimo
Hasta ~500 entradas totales: rendimiento normal

Individual IPs: negligible impact
/24 ranges: minimal impact
Up to ~500 total entries: normal performance

Einzelne IPs: vernachlässigbare Auswirkung
/24-Bereiche: minimale Auswirkung
Bis zu ~500 Einträge insgesamt: normale Leistung

IP individuelles : impact négligeable
Plages /24 : impact minimal
Jusqu'à ~500 entrées totales : performance normale

⚠️ Posible impacto⚠️ Possible impact⚠️ Mögliche Auswirkungen⚠️ Impact possible

Rangos /16 o mayores: impacto notable
1,000+ entradas: latencia incremental
10,000+ entradas: ralentización significativa

/16 ranges or larger: noticeable impact
1,000+ entries: incremental latency
10,000+ entries: significant slowdown

/16-Bereiche oder größer: spürbare Auswirkungen
1.000+ Einträge: zunehmende Latenz
10.000+ Einträge: erhebliche Verlangsamung

Plages /16 ou plus : impact notable
1 000+ entrées : latence incrémentale
10 000+ entrées : ralentissement significatif

📌 Consejo de rendimiento: Para bloquear países enteros o rangos muy grandes, usa Geo Blocking en lugar de la Blocklist. Geo Blocking está optimizado para rangos geográficos y tiene mejor rendimiento con listas grandes. 📌 Performance tip: To block entire countries or very large ranges, use Geo Blocking instead of the Blocklist. Geo Blocking is optimized for geographic ranges and performs better with large lists. 📌 Leistungstipp: Verwenden Sie zum Blockieren ganzer Länder oder sehr großer Bereiche Geo-Blocking anstelle der Blocklist. Geo-Blocking ist für geografische Bereiche optimiert und bietet eine bessere Leistung bei großen Listen. 📌 Conseil de performance : Pour bloquer des pays entiers ou de très grandes plages, utilisez le Géo-Blocage au lieu de la Blocklist. Le Géo-Blocage est optimisé pour les plages géographiques et offre de meilleures performances avec les grandes listes.