OPNsense Forum

English Forums => General Discussion => Topic started by: tangofan on August 04, 2026, 09:55:34 PM

Title: Crowdsec plugin aliases: crowdsec_blocklist vs. crowdsec_blacklist
Post by: tangofan on August 04, 2026, 09:55:34 PM
On my 26.7.1_1 installation of OPNsense I recently successfully ran the rules migration and switched to the new firewall and NAT rules UI. However there was one oddity that I noticed. For the Crowdsec plugin I am having TWO aliases for IPv4, crowdsec_blocklists and crowdsec_blacklists (and similarly two aliases for IPv6).

The "blacklists" alias appears in a floating rule, which I manually created some years ago, the blocklists alias appears in automatically generated rules (see attached pic). Apparently only the ipv4 crowdsec_blocklists alias is populated (see attached pic).

I'm wondering, what happened here. Did Crowdsec at some point in time change the naming scheme of their aliases from xxx_blacklists to xxx_blocklists? If so, I assume I could just delete my manual rules and delete the alias crowdsec_blacklists and crowdsec6_blacklists. Or does these aliases actually mean different things?

Thanks in advance for any insights.
Title: Re: Crowdsec plugin aliases: crowdsec_blocklist vs. crowdsec_blacklist
Post by: Patrick M. Hausen on August 04, 2026, 11:02:11 PM
The terms "whitelist" and "blacklist" are considered racist and most projects replace(d) them with e.g. "allowlist" and "blocklist". Similar "master" in version control is replaced by "main" and "master/slave" in high availability by e.g. "primary/secondary" or "active/standby".

Kind regards,
Patrick