Skip to main content
Drupal is a registered trademark of Dries Buytaert
Release: Views Bootstrap 5.5.4 — Minor update available for module views_bootstrap (5.5.4). Release: Rightup theme 1.0.3 — Minor update available for theme vartheme_bs5_rightup (1.0.3). Release: CommentOn 1.0.6 — Minor update available for module commenton (1.0.6). Release: ChatGPT Ads 1.0.3 — Minor update available for module chatgpt_ads (1.0.3). Release: Opensolr Search 5.1.3 — Minor update available for module opensolr_search (5.1.3). Release: ServiceM8 Webform Integration 1.2.1 — Minor update available for module servicem8_webform (1.2.1). Release: PostfixAdmin 1.0.0 — Initial release available for module postfix_admin (1.0.0)! Release: ip_analyser 1.0.3 — Minor update available for module ip_analyser (1.0.3). Module Revived: Swagger-PHP OpenAPI 3 documentation generator 1.0.0 — Module swagger_php updated after 10 months of inactivity (1.0.0). Security Coverage: Microsoft Azure AI — Module ai_provider_azure now has official Drupal security advisory coverage.

Basic perimeter defence for a Drupal site. This module bans the IPs who send suspicious requests to the site. The concept is: if you have no business here, go away.

Use the perimeter module if you get a lot of requests to 'wp-admin' or to .aspx urls on a Linux server, or other similar requests. The URL patterns that result in a ban can be configured in the admin settings

The module is optimized for performance and designed to be activated when a Drupal site is targeted by hackers or bots.

How to use

Enable the module, configure a few banned patterns in the admin page, and check your site logs after a while.

Use the core's ban module to manage banned IPs.

Note: Before testing this module from your own IP, make sure you can delete your IP from the ban_ip table in your Drupal site's database.

Future improvements

  • Configure a threshold for banning
  • Allow other modules to know about the ban, and to stop it.
  • Ban on access denied events
  • Upgrade from path2ban

Important upgrade message

The module administration form is protected by the 'Administer site settings' permission, which is too wide for the use of the module. We have a merge request to create a new permission for the module administration, and it is expected to be merged on the first release candidate of the 3.1 version.
This is an important change, and we want to advise site owners to test their configurations before and after upgrading to the upcoming 3.1 version.

Drupal 7

For a module that provides similar functionality under Drupal 7 please see path2ban.

Companion Modules

  • auto_unban augments core's ban module to automatic unban IP's after a period of time. This is best used with automatic ban modules such as perimeter.

Alternative modules

Depends on

Dependencies of the latest stable release

No dependencies recorded for this project.

Required by

Tracked projects that depend on this one

No tracked projects depend on this one yet.

Activity

Tracked releases
8
Tracked since
Mar 2023
Latest release
2 years ago
Releases (12 mo)
0
Maintenance
Dormant

Release Timeline

Releases

Version Type Core Release date
3.0.4 Stable Aug 28, 2024
3.0.3 Stable Aug 27, 2024
3.0.2 Stable Aug 27, 2024
3.0.1 Stable Jan 10, 2024
3.0.0 Stable Nov 25, 2023
3.0.0-rc4 Pre-release Jun 29, 2023
3.0.0-rc3 Pre-release Mar 23, 2023
3.0.0-rc2 Pre-release Mar 23, 2023