Re: Blocking incoming IP address immediately

From: Bill Unruh (unruh_at_string.physics.ubc.ca)
Date: 11/29/04

  • Next message: Tim Haynes: "Re: Blocking incoming IP address immediately"
    Date: 29 Nov 2004 17:31:06 GMT
    
    

    "Jeff Franks" <jfranks1970@charter.net> writes:

    ]Wow, thanks for the info. I'll give all this a try asap. I like the
    ]"abusers" chain idea. Still, the problem is that when I run the command
    ]listed, it doesn't immediately take effect. I had this exact same issue a
    ]few months back, but it was on RedHat 7 and an olllld version of IPTABLEs.
    ]This one is on RH 9 and the newest IPTABLES rpm. grrrrrr.

    I suppose you could always stop and restart iptables. There should be a
    /etc/init.d script to do so.


  • Next message: Tim Haynes: "Re: Blocking incoming IP address immediately"

    Relevant Pages

    • Re: Blocking incoming IP address immediately
      ... "abusers" chain idea. ... This one is on RH 9 and the newest IPTABLES rpm. ... > taking packets from that ip and drops them, to the end of the INPUT chain. ...
      (comp.os.linux.security)
    • Google Summer of Code 2009: Student applies to create a Better IPTables Management Tool
      ... a student) and select the Linux Foundation ... The tool focuses on helping the user to perceive what a particular chains of rules in a particular table does to a user specified packet. ... As the project aims for better IPtables management tool, I can contribute with my hard earned 3 years experience in maintenance of firewalls. ... The tools helps the user to either select all the rules in the chain or some particular rules and tells the impact of the application of selected rules upon the incoming/outgoing packet. ...
      (Linux-Kernel)
    • Re: Sample iptables rules list, inviting your suggestions / criticisms (thanks) :-)
      ... iptables commandline syntax. ... rules into a user-defined chain, so you need to define them only once. ... As I had suggested in I'd put the DNS ... $ipt -P OUTPUT DROP ...
      (comp.security.firewalls)
    • Need Help Figuring Out a DMZ Setup
      ... i have just built a new firewall box running redhat 8 & iptables. ... i can access my web site on the server in the dmz. ... packets that came from that lan (like checking mail, ... # Create chain for bad tcp packets ...
      (comp.os.linux.security)
    • Re: Help with Iptables on with RH linux
      ... iptables -P OUTPUT DROP ... # PREROUTING chain rules ... INPUT only when packets have a destination IP of your firewall. ...
      (RedHat)

  • Quantcast