Active CrowdSec Bans
0
Enforced at kernel layer (nftables)
HTTP Queries Inspected
0
Real-time Nginx log stream
Auth Events Inspected
0
SSH & PAM brute-force monitor
VM 100 System Load
-
RAM: -
🛡️ Defense-in-Depth Enforcement Layers
Last update: Never
Cisco SG350-10 SVI
Hardware Silicon ACL (VLAN 10)
Proxmox VE 9 Hypervisor
Micro-segmentation (tap100i0)
Ubuntu UFW Firewall
Host Ingress & Lateral Drop
CrowdSec IPS Engine
Real-Time Threat Detection
NFTables Kernel Bouncer
Instant Silicon/Kernel Drops
Linux Auditd
Webroot & Exec Auditing
AIDE File Integrity
Cryptographic Hash Baseline
Proxmox 2FA
TOTP Authenticator (root@pam)
Wazuh SIEM / XDR
Agent Connected (:1514)
⛔ Active Banned IPs (CrowdSec Decisions)
| Attacker IP | Triggered Rule / Scenario | Scope | Ban Duration | Expiration | Action |
|---|---|---|---|---|---|
|
No Active Bans
No malicious hosts are currently blocked. Your network is quiet and secure.
|
|||||
🔍 Intercepted Bot Probes & Vulnerability Scans
Real visitor IPs extracted via Cloudflare CF-Connecting-IP
| Time (UTC) | Client IP | Method | Target Resource | Status | User Agent |
|---|---|---|---|---|---|
|
No Suspicious Probes Detected
Nginx has not recorded scanning attempts on sensitive endpoints in recent logs.
|
|||||
📜 Recent CrowdSec Threat Alerts
| Alert ID | Source IP | Scenario | Events | Timestamp |
|---|---|---|---|---|
|
No Threat Alerts Recorded
Zero security scenarios triggered.
|
||||