Esta página aún no está disponible en tu idioma.
Data Sources
Sentinel utilizes publicly available data sources to maintain up-to-date threat intelligence while remaining self-hosting friendly.
Firehol IP Lists
Sentinel’s Threat Intelligence integrates with FireHOL blocklists to identify malicious IPs. For more information and configuration options, visit related documentation.
Phishing URLs
The list of Phishing URLs is provided by:
Environment variable: PHISHING_LIST_URL
Disposable Email Domains
Sentinel detects temporary email addresses using domains from:
Environment variable: EMAIL_LIST_DISPOSABLE
Common User-Agents
Commonly used User-Agents are detected using the open-source data provided by:
Environment variable: USER_AGENT_LIST_URL
Automatic Updates
Data files are updated automatically based on the configured CRON-style schedule. To adjust the update frequency, set the related environment variables.
High-Risk Countries
Country List
Below is a list of high-risk countries identified based on observed levels of cyberattacks and spam activity. Sentinel will treat access from these locations as high-risk, which may trigger stricter security measures.
| ISO Code | Country Name |
|---|---|
| ir | Iran |
| kp | North Korea |
| cu | Cuba |
| sy | Syria |
| by | Belarus |
| cd | Democratic Republic of the Congo |
| ru | Russia |
| ly | Libya |
| cf | Central African Republic |
| iq | Iraq |
| mm | Myanmar (Burma) |
| lb | Lebanon |
| so | Somalia |
| ve | Venezuela |
| zw | Zimbabwe |
| sd | Sudan |
| il | Israel |
| ng | Nigeria |
| ua | Ukraine |
Change in 1.31.0:
Removed BR, CN, IN, PK, US, and VN from the default list. Use HIGH_RISK_COUNTRIES to set your own list.
Supporting These Projects
These data sources are freely available. Consider supporting the maintainers: