> -----Original Message----- > From: netfilter-owner@xxxxxxxxxxxxxxx [mailto:netfilter-owner@xxxxxxxxxxxxxxx] > On Behalf Of Matt Zagrabelny > Sent: Wednesday, October 22, 2008 3:29 PM > To: Joey > Cc: IPTables > Subject: Re: tool to search within cidr blocks > > On Wed, 2008-10-22 at 15:28 -0400, Joey wrote: > > > Is there a tool or a way to ask iptables what rule it matches? > > LOG before you DROP. > We are definatley logging, but the rejected address is not matching any of the blocks defined to block. It's very strange. Joey -- To unsubscribe from this list: send the line "unsubscribe netfilter" in the body of a message to majordomo@xxxxxxxxxxxxxxx More majordomo info at http://vger.kernel.org/majordomo-info.html