About Firewall IPs
A community-reported IP blacklist and firewall integration platform — servers and websites report attackers, and get a shared blocklist back in return.
How it works
Firewall IPs sits between individual firewalls and a shared, consolidated blacklist. When a participating server or site blocks an attacking IP, it reports that IP here. The platform deduplicates reports, applies netblock consolidation and expiry rules, and redistributes the current blocklist back to every participant — so an attacker blocked on one server gets blocked everywhere else, usually within minutes.
Server / CSF integration
For servers running ConfigServer Security & Firewall. One install script wires CSF's block events straight into the shared blacklist — both reporting outbound and blocking inbound.
Setup docsWordPress plugin
Detects brute-force logins, XML-RPC abuse, user enumeration, and vulnerability scans against your WordPress site, and blocks known-bad IPs from the shared WordPress blocklist automatically.
Plugin details on requestFree tools
- Blacklist check — see whether an IP is currently reported.
- IP Location lookup — approximate city, region, and coordinates for any IP.
- CSF configuration optimizer — tailored tuning suggestions for csf.conf.
Frequently asked questions
Want to integrate a server or site? See the API documentation for setup instructions and endpoint reference.