<?xml version="1.0" encoding="UTF-8"?><rss xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:atom="http://www.w3.org/2005/Atom" version="2.0"><channel><title><![CDATA[HEY MASTODON SERVER&#x2F;INSTANCE ADMINS:]]></title><description><![CDATA[<p>HEY MASTODON SERVER/INSTANCE ADMINS:</p><p>ISSUE:<br />I found that my Masto instance was being completely *hammered* with bot crawlers from Meta, Apple and others.</p><p>My server is *just me* at the moment so not only is this kind of activity uncalled for, but many requests are for politically sensitive hashtags, users, etc..</p><p>SOLUTION:<br />Using fail2ban, I customized the 'nginx-badbots' filter (<a href="https://gist.github.com/dale3h/660fe549df8232d1902f338e6d3b39ed" rel="nofollow noopener"><span>https://</span><span>gist.github.com/dale3h/660fe54</span><span>9df8232d1902f338e6d3b39ed</span></a>) to also include 'meta-externalagent' and 'applebot'. </p><p><a href="https://mastodon.subj.am/tags/cybersecurity" rel="tag">#<span>cybersecurity</span></a> <a href="https://mastodon.subj.am/tags/mastodon" rel="tag">#<span>mastodon</span></a> <a href="https://mastodon.subj.am/tags/selfhosted" rel="tag">#<span>selfhosted</span></a></p>]]></description><link>https://board.circlewithadot.net/topic/f94827e1-a8fc-463e-8a14-ab4ef48fc0e4/hey-mastodon-server-instance-admins</link><generator>RSS for Node</generator><lastBuildDate>Fri, 15 May 2026 04:14:44 GMT</lastBuildDate><atom:link href="https://board.circlewithadot.net/topic/f94827e1-a8fc-463e-8a14-ab4ef48fc0e4.rss" rel="self" type="application/rss+xml"/><pubDate>Wed, 22 Apr 2026 17:40:51 GMT</pubDate><ttl>60</ttl><item><title><![CDATA[Reply to HEY MASTODON SERVER&#x2F;INSTANCE ADMINS: on Wed, 22 Apr 2026 17:46:44 GMT]]></title><description><![CDATA[<p><span><a href="/user/jordan%40mastodon.subj.am">@<span>jordan</span></a></span> On my host plan I cannot implement Fail2Ban (really wish I could, this is the way to go.) But these two cases are also fairly easy to stop in htaccess.</p>]]></description><link>https://board.circlewithadot.net/post/https://defcon.social/users/retech/statuses/116449607960395636</link><guid isPermaLink="true">https://board.circlewithadot.net/post/https://defcon.social/users/retech/statuses/116449607960395636</guid><dc:creator><![CDATA[retech@defcon.social]]></dc:creator><pubDate>Wed, 22 Apr 2026 17:46:44 GMT</pubDate></item></channel></rss>