hosts.deny vs iptables

Bruno Wolff III bruno at wolff.to
Wed May 24 15:34:23 UTC 2006


On Wed, May 24, 2006 at 10:46:39 -0400,
  CodeHeads <codeheads at gmail.com> wrote:
> 
> Ed,
> Thank you, That what I was looking for to verify what I have learned so far.
> 
> Question on entering IP address in IPTables, say I want to add a range to block
> the whole ip range of 10.0.0.0 (example of course)
> Can I do this:
> $iptables -A FORWARD -p tcp -s 10. -i eth0 -j DROP
> OR
> $iptables -A FORWARD -p tcp -s 10.* -i eth0 -j DROP

Either
$iptables -A FORWARD -p tcp -s 10.0.0.0/8 -i eth0 -j DROP
or
$iptables -A FORWARD -p tcp -s 10.0.0.0/255.0.0.0 -i eth0 -j DROP
will work.




More information about the fedora-list mailing list