Skip to main contentSkip to footer

Server licences and the report budget

A licence per server, what it buys and what it does not: how a host is identified, how licences are assigned and released, the report budget of one server, and exactly what keeps running on a host without a licence.

Server licences

The agent is licensed per server. Servers are their own pool and are counted separately from the domains of the Hive plugin, so installing the agent never costs you a domain.

PlanServers includedMore servers
FreenoneNot bookable
ContributornoneNot bookable
Professional1Any number, self-service up to 200, beyond that through Enterprise
Business3Any number, self-service up to 200, beyond that through Enterprise
Enterpriseby contractby contract
Licences on the accountPer server and monthPer server and year
1 to 44.90 €49.00 €
5 to 93.90 €39.00 €
10 to 242.90 €29.00 €
25 to 491.90 €19.00 €
50 and above1.40 €14.00 €

All prices incl. VAT. The yearly price is two months free on every step. The Business volume multiplier raises your domain count, not your included servers.

A host appears under Agent Servers in your account the first time its agent calls the API, with its install ID, its version and when it was last heard from. A spare licence is taken at once; without one the row says so and a button adds one. There is nothing to register in advance and nothing to paste into a file.

Identity is the install ID, never the hostname and never the key. Rotating the API key on a host does not create a second licence, and renaming the machine changes nothing. When you have more agents than licences, the oldest hosts keep theirs. A cancelled server licence keeps working to the end of the paid period plus a grace window on top.

Free and Contributor include no server licence. Once licensing is fully enforced, the agent there runs as a reporter with full local protection: it detects, blocks locally and reports, but it does not load the community blacklist. Until then, and with a complimentary licence on such an account, the agent loads the feed once an hour and takes addresses from a confidence of 90. From Professional upwards it loads the feed every 15 minutes, from a confidence of 75.

Licensing is being introduced in stages. Every server that reported to ReportedIP before the cut-over date keeps a free licence permanently.

Groups and webhooks

From Professional upwards, the keys of an account can be put into groups under Groups in your account. Every address one member reports is blocked on every other member for the group's window, on the servers through the group list and on WordPress sites through the Hive plugin, and a webhook per ban can notify a chat or a ticket system.

The report budget of one server

The daily report limit belongs to the account. On top of it every installation carries a budget of its own, worked out from the account limit and the number of servers on the account: 150 percent of its fair share, never below 50 reports a day and never above the account limit. One server gets the whole account limit, two get 75 percent each, three a half each, six a quarter each. Add a server and every budget falls by itself, remove one and they rise again.

Under Agent Servers in your account you can pin a fixed number on a single server, hand it back to the automatic budget, or stop that machine reporting altogether. status prints it as a line of its own, so it cannot be mistaken for the account figure:

text
this host: reports_today=17/25000 (automatic budget, counted, not enforced yet)
Counted, and not enforced. No report is refused because of this budget today. It evens out one loud server, not two that are loud at the same time: two servers at 75 percent each may still spend the account's whole day between them. What binds the total is the account limit, exactly as it always did. The counter resets at midnight UTC.

What happens without a licence

One thing stops, and one only: the blacklist feed pauses, so the agent stops downloading new community data for that host. Everything else keeps running. A server must not become unprotected because an invoice was missed.

FunctionWithout a licence
Feed downloadStops. This is the part that is paid for.
The list already in the kernelStays. It is never flushed, and it keeps blocking.
Local detectionKeeps running. All fourteen sources, all thresholds.
Local blockingKeeps running, escalation and timeouts included, restore after a reboot included.
ReportsKeep going, within the daily limit of your plan.
Whitelist, chain, housekeeping, log rotationKeep running.
Self-updateKeeps running. An outdated agent on an unpaid host puts everyone at risk, so updates never wait for a payment.
statusShows the licence state, the reason, the age of the list and what to do about it.

The service is not stopped, the sets are not emptied, local bans are not lifted, and there is no advertising in the log. A free account can run the agent as a pure reporter with full local protection, and that is a legitimate way to use it.

An agent that is not running is the other case, and the two get confused. An agent that is not running leaves nothing of ReportedIP in place. No detection on SSH, mail, FTP, the web logs or the panel, no local blocking of new attackers, and no reports. Only the blacklist entries already loaded into the firewall are still there, and they do not learn anything new.

Two mails cover that case. Stopping the agent, for instance with systemctl stop reportedip-agent, sends exactly one mail to the address in notify.email naming what this host stops doing from that moment; a reboot and a service restart send none. And a host that has not been in contact for more than six hours produces one mail to the account owner, bundled per account, with an all-clear as soon as it reports again. The mails about silence name a host the way the portal does, the label first, then the hostname, then the first characters of the install ID, and never the full install ID. The stop mail comes from the agent itself and names the host by its hostname.

Last updated: · Maintained by the ReportedIP team

Security Focused
GDPR Compliant
Made in Germany
Back to Docs