> iptables -I RH-Firewall-1-INPUT -s 195.225.176.0/24 -j DROP I think you mean: iptables -I RH-Firewall-1-INPUT 1 -s 195.225.176.0/24 -j DROP > > instead and see what that does. That's replacing '-A', which appends the > rule to the END of the chain, with '-I', which inserts the rule at the HEAD > of the chain. >