v1.0.0

Managing Blocks

Last updated

This page explains how to query and lift a Block, and why the two automatic blocking paths do not run today.

Query and Unblock

Action How
Query sentry.Manager.Block.IsBlock(ip); returns false on a Redis error
Unblock No API; redis-cli DEL block:{ip}
Let a blocked IP through Add it to the Allow list; Allow takes precedence over Block

Automatic Blocking Today

Two automatic paths exist by design, and neither runs today; see Known Issues:

Path Status
Call Block.Add when the score is > 100 The total caps at 100, so the condition never holds; a score >= 100 only rejects that request
Escalate to Deny after BlockToBan requests while blocked Blocked requests already return 403 one step earlier, so the check never runs

Today a Block is only created when your code calls Block.Add.

For how block duration and the block record are computed, see Temporary Blocking.

中文