#crowdsec — Public Fediverse posts
Live and recent posts from across the Fediverse tagged #crowdsec, aggregated by home.social.
-
Learn how to set up free bot and fake account protection with CrowdSec and ALTCHA on Ubuntu. Block fake signups, spam, and abusive bots.
Full guide here: https://ostechnix.com/build-free-bot-fake-account-protection-crowdsec-altcha-ubuntu/
#Crowdsec #Altcha #Captcha #reCAPTCHA #BotProtection #IntrusionPreventionSystem #Websitesecurity
-
Learn how to set up free bot and fake account protection with CrowdSec and ALTCHA on Ubuntu. Block fake signups, spam, and abusive bots.
Full guide here: https://ostechnix.com/build-free-bot-fake-account-protection-crowdsec-altcha-ubuntu/
#Crowdsec #Altcha #Captcha #reCAPTCHA #BotProtection #IntrusionPreventionSystem #Websitesecurity
-
📊 TheDuffman85/crowdsec-web-ui
Web interface for CrowdSec security monitoring. Investigates alerts, manages blocking decisions, and views runtime metrics.
⭐ Stars: 475
📅 Last Update: Aug 05, 2026https://github.com/TheDuffman85/crowdsec-web-ui
#selfhosted #homelab #selfhost #selfhosting #opensource #crowdsec #security
-
📊 TheDuffman85/crowdsec-web-ui
Web interface for CrowdSec security monitoring. Investigates alerts, manages blocking decisions, and views runtime metrics.
⭐ Stars: 475
📅 Last Update: Aug 05, 2026https://github.com/TheDuffman85/crowdsec-web-ui
#selfhosted #homelab #selfhost #selfhosting #opensource #crowdsec #security
-
Oh, hey.
I had Crowdsec Manager running on my VPS, using their Docker Compose template. Including this part:
ports:
- "8080:8080"I just accidentally discovered that anyone could access the UI with
[VPS IP]:8080, even though it's locked behind Pangolin's authentication.So, yeah...
Don't expose sensitive VPS ports in Docker unless you know they're firewalled, kids.
Time to go tear shit down and rebuild it...
-
Oh, hey.
I had Crowdsec Manager running on my VPS, using their Docker Compose template. Including this part:
ports:
- "8080:8080"I just accidentally discovered that anyone could access the UI with
[VPS IP]:8080, even though it's locked behind Pangolin's authentication.So, yeah...
Don't expose sensitive VPS ports in Docker unless you know they're firewalled, kids.
Time to go tear shit down and rebuild it...
-
Unsere :nextcloud: Nextcloud Installationsanleitungen wurden überarbeitet:
- Nextcloud Installationsanleitung für Ubuntu 26.04 LTS 👇
(https://www.c-rieger.de/nextcloud-installationsanleitung-fuer-ubuntu-26-04-lts/)
- Nextcloud Installationsanleitung 👇
(https://www.c-rieger.de/nextcloud-installationsanleitung/)
- Nextcloud Installationsskript 👇
(https://www.c-rieger.de/nextcloud-installationsskript/)Die Crowdsec-Installation wurde angepasst. Viel Spaß.
-
Unsere :nextcloud: Nextcloud Installationsanleitungen wurden überarbeitet:
- Nextcloud Installationsanleitung für Ubuntu 26.04 LTS 👇
(https://www.c-rieger.de/nextcloud-installationsanleitung-fuer-ubuntu-26-04-lts/)
- Nextcloud Installationsanleitung 👇
(https://www.c-rieger.de/nextcloud-installationsanleitung/)
- Nextcloud Installationsskript 👇
(https://www.c-rieger.de/nextcloud-installationsskript/)Die Crowdsec-Installation wurde angepasst. Viel Spaß.
-
Frankreich oder Indien? Ich bin weitergekommen und zwar genau nachdem klar war, warum meine IP blockiert wurde. Mein #VPN gibt mir aktuell eine IP aus Frankreich🤦 Ich vermute, #Crowdsec hatte damit zeitweise Probleme. Um das zu testen, nahm ich die IP aus meiner Positivliste. Plötzlich funktionierte alles wieder. Seitdem scheint #Crowdsec keine Probleme mehr zu machen.
-
ich Frage mich was #Crowdsec veranlasst hat plötzlich mein "out" Verkehr zu überwachen?! Meine FW Regel gilt nur für IN. Das verhalten ist nach ein #OPNsense Update aufgetreten. Interessanterweise Funktioniert das Routing nicht mehr weil Crowdsec es blockiert. Ich musste eine Allow Regel in Crowdsec anlegen, damit mein Zugriff auf Seiten wieder möglich ist.
-
Futter für die #Crowdsec #Collections .Diesmal wird #Adguadhome eingebunden.
>$ cscli collections install LePresidente/adguardhome
-
#homelab story time. I wanted to simplify setup between my nginx & proxy_pass destinations so that I could move my services between nodes without many changes. Sadly nginx doesn't support mDNS for proxy_pass. #mikrotik to the rescue. Used https://finnes.dev/blog/2025/08-09-mikrotik-dhcp-to-dns-synchronization-script/ to synchronize my DHCP assignments into static DNS entries.
I can now use proxy_pass navidrome.servers.${homelab.domain}
Mikrotik is a gift that keeps on giving in my homelab (#crowdsec story for some other time)
-
#Crowdsec has been re-enabled on #Midgaard - the #Kubernetes cluster running #MSTDNDK. We're doing this without CloudFlare and virtualization - it's #baremetal and homegrown #firewall all the way.
Should you experience connectivity issues, either as a user or a federated instance, please reach out to us.
-
#Crowdsec has been re-enabled on #Midgaard - the #Kubernetes cluster running #MSTDNDK. We're doing this without CloudFlare and virtualization - it's #baremetal and homegrown #firewall all the way.
Should you experience connectivity issues, either as a user or a federated instance, please reach out to us.
-
#Crowdsec Weitere (neue?) Collections. Also unbedingt auf Stand bringen um mehr aus Crowdsec rauszubekommen. ☝️
cscli collections install crowdsecurity/http-dos
cscli collections install crowdsecurity/suricata
cscli collections install crowdsecurity/caddy
und vieles mehr https://app.crowdsec.net/hub/collections
-
#Crowdsec Weitere (neue?) Collections. Also unbedingt auf Stand bringen um mehr aus Crowdsec rauszubekommen. ☝️
cscli collections install crowdsecurity/http-dos
cscli collections install crowdsecurity/suricata
cscli collections install crowdsecurity/caddy
und vieles mehr https://app.crowdsec.net/hub/collections
-
#Crowdsec hat anscheinend das Web #Dashboard neu gestaltet. Viele Infos und viele Spielereien.
-
#Crowdsec hat anscheinend das Web #Dashboard neu gestaltet. Viele Infos und viele Spielereien.
-
-
-
@pft Das freut mich sehr! Denke auch daran eine Whitelist anzulegen. Sicher ist sicher. In den Anfängen von #Crowdsec habe Ich gelesen das es Fälle gab wo plötzlich von diesen Tool ausgeschlossen wurde. Und wenn sowas passiert wird es richtig ärgerlich. Deshalb Whitelist anlegen. Ich persönlich habe noch nie dieses Problem gehabt und wurde auch nicht ausgeschlossen, aber man will ja auch nicht der Erste sein den es trifft.
-
@pft Das freut mich sehr! Denke auch daran eine Whitelist anzulegen. Sicher ist sicher. In den Anfängen von #Crowdsec habe Ich gelesen das es Fälle gab wo plötzlich von diesen Tool ausgeschlossen wurde. Und wenn sowas passiert wird es richtig ärgerlich. Deshalb Whitelist anlegen. Ich persönlich habe noch nie dieses Problem gehabt und wurde auch nicht ausgeschlossen, aber man will ja auch nicht der Erste sein den es trifft.
-
@pft Ich habe gute Erfahrungen mit crowdsec, allerdings als Plugin unter der Firewall #opnsense. Kann ich empfehlen und funktioniert einwandfrei.
Alternativ zu #crowdsec gibt es #qfeeds
https://qfeeds.com/ -
@pft Ich habe gute Erfahrungen mit crowdsec, allerdings als Plugin unter der Firewall #opnsense. Kann ich empfehlen und funktioniert einwandfrei.
Alternativ zu #crowdsec gibt es #qfeeds
https://qfeeds.com/ -
@endareth You could use something like #Cloudflare, but I've never been a big fan of proxies in front of proxies, or I found this from searching the web just now - https://binadit.com/tutorials/implement-haproxy-waf-integration-modsecurity
I do use #Apache w/ mod_security on my cPanel & WHM box.
At home I use #Traefik with a #Crowdsec plugin that seems to work well.
-
@endareth You could use something like #Cloudflare, but I've never been a big fan of proxies in front of proxies, or I found this from searching the web just now - https://binadit.com/tutorials/implement-haproxy-waf-integration-modsecurity
I do use #Apache w/ mod_security on my cPanel & WHM box.
At home I use #Traefik with a #Crowdsec plugin that seems to work well.
-
@Atoll1609 Ich nutze auch die Kostenlose "Community" Version. Bei mehr Möglichkeiten hört dann der Spaß auf. Schaue dir die Preisliste und die dazugehörige Optionen an.
Ich persönlich nutze gerne #Crowdsec und in Verbindung mit weiteren Listen macht es einen guten Job. Aber es ist halt die Community Version und keine "pro".... Schaut dir mal q-feeds an, das ist ähnlich wie Crowdsec aber Preislich besser. Ich nutze beides.
-
@Atoll1609 Ich nutze auch die Kostenlose "Community" Version. Bei mehr Möglichkeiten hört dann der Spaß auf. Schaue dir die Preisliste und die dazugehörige Optionen an.
Ich persönlich nutze gerne #Crowdsec und in Verbindung mit weiteren Listen macht es einen guten Job. Aber es ist halt die Community Version und keine "pro".... Schaut dir mal q-feeds an, das ist ähnlich wie Crowdsec aber Preislich besser. Ich nutze beides.
-
Any of you fine people here has experience with #Crowdsec? Is it any good? Any suggestion for better alternatives? I stumbled upon it as a modern replacement for fail2ban and an IP blocking tool.
-
I really need to dive into #SELinux and #AppArmor at some point. For the stuff I host for myself in VMs, I have it disabled for my own convenience, but I know I should have these protections enabled. Anyone have any good guides for beginners? While you're at it, I could probably use some good #CrowdSec beginner resources as well.
-
I really need to dive into #SELinux and #AppArmor at some point. For the stuff I host for myself in VMs, I have it disabled for my own convenience, but I know I should have these protections enabled. Anyone have any good guides for beginners? While you're at it, I could probably use some good #CrowdSec beginner resources as well.
-
🔥 Come installare CrowdSec e usarlo come WAF davanti a Nginx o Traefik. CrowdSec, la guida pratica all'IDS/IPS open source che sostituisce Fail2Ban con una blocklist condivisa da migliaia di server globali
https://gomoot.com/come-installare-crowdsec-e-usarlo-come-waf-davanti-a-nginx-o-traefik/ -
#nerdistan Frühschicht:
#crowdsec wedelt zwar mit notifications nur mit premium Abo rum, aber unter der Haube geht da ne Menge im freetier.
Nette Menschen im Netz gaben mir Denkanstöße:
https://gist.github.com/syncip/c462234cf1cbd163fc01bd42b86c8d3d
Dank #ntfy geht das auch alles auf der eigenen Infra.
Nun sollen se mal kommen, die bots, ich will mein Handy piepen sehen.
-
#nerdistan Frühschicht:
#crowdsec wedelt zwar mit notifications nur mit premium Abo rum, aber unter der Haube geht da ne Menge im freetier.
Nette Menschen im Netz gaben mir Denkanstöße:
https://gist.github.com/syncip/c462234cf1cbd163fc01bd42b86c8d3d
Dank #ntfy geht das auch alles auf der eigenen Infra.
Nun sollen se mal kommen, die bots, ich will mein Handy piepen sehen.
-
Level up your security game! 🛡️ This new short dives into CrowdSec – think Fail2Ban, but seriously powerful. Learn how to integrate it with pfSense for some next-level threat detection. Check it out! #CrowdSec #pfSense #OpenSource
-
On second thought, maybe I shouldn't abbreviate "CrowdSec Manager" in my self-hosting setup...
-
Is @CrowdSec now sending Hub Data to Cloudflare? 🤦
This changes everything...
-
Wenn man einmal anfängt ...
Nach Feierabend "bloss" mal eben #crowdsec auf der outpost vps aufsetzen. Ok, geht. Oh, da sieht man ja die ganzen ssh-bruteforces ... Prometheus draussen im Web aufmachen keine so gute Idee, aber will adminp0rn, gibt so schöne Dashboards.Zwischendrin @oli nmap Terror machen geschickt, um die alerts zu testen 🤖
Bis halb 12 #headscale aufgesetzt mit ein paar Stolperern und jetzt ist besser mal Schluss für heute.
Up next: #tailscale IM docker