If i had a long list of ip/subnets i want to block yet inside of a few of those subnets i want to allow single ip''s what would be the best way? example blacklist file 122.122.0.0/16 144.122.0.0/16 133.122.0.0/16 exclusion 122.122.133.1 -- Regards Sean Mathews Nu Tech CTO struct SoftwareProfessional { double salary; long lunches; float jobs; char unstable; void work; short tempers; }; --
Sean wrote:> If i had a long list of ip/subnets i want to block > yet inside of a few of those subnets i want to allow > single ip''s what would be the best way? > > example blacklist file > 122.122.0.0/16 > 144.122.0.0/16 > 133.122.0.0/16 > > exclusion > 122.122.133.1 >There''s currently no easy way to do that in the blacklist file -- you''ll have to do it with rules. -Tom -- Tom Eastep \ Shorewall - iptables made easy AIM: tmeastep \ http://www.shorewall.net ICQ: #60745924 \ teastep@shorewall.net