iptables-cb
Scripted service managing iptable blocks by ISO
This SysV and systemd service manages / maintains blocks of IP address ranges by country code using publicly available / published IP ranges assigned by country. Configuration is managed through a simple file listing ISO codes of countries to block in /etc/sysconfig much as any other service. Includes optimizations using ipset and leverage of a tree hierarchy in the generated iptables rules to ensure minimal performance impact on higher network traffic volumes.