On Thursday 10 June 2004 6:39 pm, Jonathan Villa wrote: > I want to allow connections on ports 3306, 22, and 80 for a group of ip > address. > > Some will be from the block, others are dispersed. > > My assumption is this > > 1. create an array of the single ip addresses. > 2. loop throught the array printing an iptables command which will allow > access on those ports to the loop index. > 3. hardcode the ip block xx.xxx.xx.0/24 Looks like a good solution to me. Antony. -- 90% of networking problems are routing problems. 9 of the remaining 10% are routing problems in the other direction. The remaining 1% might be something else, but check the routing anyway. Please reply to the list; please don't CC me.