github hreskiv/mikr v1.32.0

4 hours ago

Added

  • Auto-block / Simple IDS — block brute-force attackers across your whole fleet. Mikr watches the failed-login messages your devices already send over syslog, counts them per source IP across all your routers, and once an IP crosses a threshold (default 5 failures in 10 minutes) it adds that IP to a mikr-blocklist firewall address-list with a 72-hour timeout. You add one drop rule referencing that list once per device — mikr only maintains the list, it never touches your firewall rules. New Candidates / Blocked / Whitelist tabs under the Security page (live updating).
    • Per-device opt-in. Nothing is blocked until you turn on Auto-block (IDS) for the devices you want protected (per device, or in bulk). Other devices are never touched.
    • Audit mode by default. Out of the box mikr only lists offending IPs as candidates so you can block them by hand. Flip on Auto-block in Settings to block automatically at the threshold.
    • Safe by default. Private (LAN) IP ranges and the mikr server's own address are never blocked, and you can add your own always-allow list (single IPs or CIDR ranges). Blocked IPs drop off automatically after the timeout, or you can unblock them with one click.

Changed

  • The Edit Device form is now identical whether you open it from the device list or the device page.

Don't miss a new mikr release

NewReleases is sending notifications on new releases.