[clue-tech] Need a quick IPTABLES line

David L. Willson DLWillson at TheGeek.NU
Fri Jun 13 21:30:18 MDT 2008


On Fri, 13 Jun 2008 20:31:26 -0600, David L. Anselmi wrote
> David L. Willson wrote:
> [...]
> > iptables -A INPUT -s 77.41.40.0/21 -j DROP
> > 
> > Dave Anselmi or someone else of equally deific intelligence level will validate.  :-)

> But you could use 127.41.40.0/21 in your command and see whether you can 
> ping something like 127.41.4x.x.  That range is in the loop back subnet 
> (127.0.0.0/8).  So you can see that it pings, then run your command, 
> then it doesn't ping.
> 
> That's not exactly a guarantee, and may not work for more complicated 
> things.  Everything is running locally and you don't know which 
> direction is being blocked.  But it's better than nothing.

F*, that's cool!  Owe you a beer, O Deific One.



More information about the clue-tech mailing list