Re: Large number of repeated rules with only differing -s ipaddrs/cidrs

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

 




A minor fix is required to "port" both to 2.6.


Lovely. Does ippool/ipset take ips only or will they also take cidrs?


ippool accepts IP addresses. In ipset, you can store CIDR netblock as
well.

I see. Thanks.


BTW...mail.so-net.com.hk is an ISP smarthost...could you block
so-net.com.hk not coming from 203.99.142.22 instead of a domain rule
block on rdns and sender addy?

And maybe all emails from 203.99.142.22 if sender addy not in
so-net.com.hk...


netfilter was not designed to filter E-mail.

:) I guess I won't need to send anything private then. The list shall suffice.



[Index of Archives]     [Linux Netfilter Development]     [Linux Kernel Networking Development]     [Netem]     [Berkeley Packet Filter]     [Linux Kernel Development]     [Advanced Routing & Traffice Control]     [Bugtraq]

  Powered by Linux