On Friday 2011-10-07 05:01, Netravali Ganesh wrote: >I don't want to make any dependency on IP. If IP get changes for any >reason ssh will be allowed. Hardly. If your sshd_config has "ListenAddress A", and your host's address changes away from A, the set of machines able to reach yours can, by pure mathematical logic, not grow. -- To unsubscribe from this list: send the line "unsubscribe netfilter" in the body of a message to majordomo@xxxxxxxxxxxxxxx More majordomo info at http://vger.kernel.org/majordomo-info.html