Re: Blocking IP addresses

From: Jeff Cochran (jcochran@info.der-keiler.de)
Date: 07/26/02


From: jcochran at naplesgov dot com (Jeff Cochran)
Date: Fri, 26 Jul 2002 11:52:58 GMT


>> Yes, any basic firewall or proxy server includes this capability.

>I know. But:
>
>- my router/firewall only has 20 filters.

Allow all LAN to WAN
Deny All WAN to LAN

What do you do with the other 18? :)

I had assumed from your first post you wanted to block an Ip on all
systems across your network, from this one it seems you only wnat to
block it on a single server. If that's the case, use IP Filtering if
you're on W2K, or your firewall if not.

Jeff



Relevant Pages

  • We have lots of users with SonicWalls for VPN connectivity in to FW-1, possible major security hole
    ... With default rule disabled: Disable default Src: LAN Dst: ALL ... The firewall WAN address is 24.184.168.52 ... A NT server on the internal LAN is 192.168.1.22 ... why is my internal server responding to this packet as a "Destination ...
    (Incidents)
  • Re: SBS 2003 - dual nics connectivity problem
    ... sbs 2003 servers, both with a nic for wan and a nic for lan. ... The problem is that after a day or so of running with both nics ...
    (microsoft.public.windows.server.sbs)
  • Re: SBS 2003 - dual nics connectivity problem
    ... Paul Barker typed: ... both with a nic for wan and a nic for lan. ... I've tried different nics, ...
    (microsoft.public.windows.server.sbs)
  • Re: Special configuration of DHCP, NAT
    ... DSL modem and NAT's the LAN. ... scrub in on $WAN all ... pass out on $WAN proto tcp from any to any modulate state flags S/SA ... pass in on $WAN inet proto icmp from any to any icmp-type $icmp_types keep state ...
    (comp.unix.bsd.openbsd.misc)
  • Re: WAN speed issue
    ... environment, bits and bytes move at a speed of 10, 100 or possibly 1000 ... Therefore you are doomed to slowdown when connected through WAN. ... is true even on a LAN. ... > more likely design for a LAN environment and not via WAN which means ...
    (microsoft.public.access.tablesdbdesign)