Did anyone try to do some script for automatic update of firewall for well know spam and attack IP addresses? For example from blocklist.de?
Hello,
squidblacklist.org has the malicious IP list in Mikrotik format and has scripts to install it. just schedule it and input your username and password. Just bear in mind that Mikrotik still has some pretty big limitations that have not been addressed with regards to larger blocklists. The routers will freeze up and suffer from memory exhaustion when the list is over 500k. Some models will get you a bit more but I have yet to see any Mikrotik product hardware or x86 running RouterOS successfully load the porn blocklist as its size is just to much for the Mikrotik to handle. Hopefully this will be addressed or maybe we will see some quad core 64 bit RouterOS with lots of ram that can handle country blocking, blocklists. ![]()
I solved this by using Raspberry PI as Adblocking DNS server in my network. Works perfectly. All requests for ads are returned as a blank web page.
It would be nice if Mikrotik would support something like this out of the box, since ads on internet are getting more and more annoying.