Blocking Reverse Proxys from cloudflare

Hi all,

am wondering if this all ? If i check the ASN via libloc

location search-as "Cloudflare"

i get the following results

AS13335 - CLOUDFLARENET
AS14789 - CLOUDFLARENET-AUS
AS132892 - Cloudflare, Inc.
AS133877 - Cloudflare Hong Kong, LLC
AS139242 - Cloudflare Sydney, LLC
AS202623 - Cloudflare Inc
AS203898 - Cloudflare Inc
AS209242 - Cloudflare London, LLC
AS394536 - CLOUDFLARENET-SFO
AS395747 - CLOUDFLARENET-SFO05

converting this into CIDR´s also via libloc and count the lines i get an result of 2200 CIDR´s

for i in $(location search-as "Cloudflare" | awk -F'[^0-9]*' '$0=$2'); do
    location list-networks-by-as --family=ipv4 "${i}"
done | wc -l

IMHO, the best way to handle this amount might be IPSet.

Best,

Erik

1 Like