Saltearse al contenido

Esta página aún no está disponible en tu idioma.

Data Sources

Sentinel utilizes publicly available data sources to maintain up-to-date threat intelligence while remaining self-hosting friendly.

Firehol IP Lists

Sentinel’s Threat Intelligence integrates with FireHOL blocklists to identify malicious IPs. For more information and configuration options, visit related documentation.

Phishing URLs

The list of Phishing URLs is provided by:

phishtank.org

Environment variable: PHISHING_LIST_URL

Disposable Email Domains

Sentinel detects temporary email addresses using domains from:

disposable-email-domains

Environment variable: EMAIL_LIST_DISPOSABLE

Common User-Agents

Commonly used User-Agents are detected using the open-source data provided by:

intoli/user-agents

Environment variable: USER_AGENT_LIST_URL

Automatic Updates

Data files are updated automatically based on the configured CRON-style schedule. To adjust the update frequency, set the related environment variables.

High-Risk Countries

Country List

Below is a list of high-risk countries identified based on observed levels of cyberattacks and spam activity. Sentinel will treat access from these locations as high-risk, which may trigger stricter security measures.

ISO CodeCountry Name
irIran
kpNorth Korea
cuCuba
sySyria
byBelarus
cdDemocratic Republic of the Congo
ruRussia
lyLibya
cfCentral African Republic
iqIraq
mmMyanmar (Burma)
lbLebanon
soSomalia
veVenezuela
zwZimbabwe
sdSudan
ilIsrael
ngNigeria
uaUkraine

Change in 1.31.0:
Removed BR, CN, IN, PK, US, and VN from the default list. Use HIGH_RISK_COUNTRIES to set your own list.

Supporting These Projects

These data sources are freely available. Consider supporting the maintainers: