Negating IP in csf.deny
Posted: 17 Jan 2007, 20:32
Hi,
I tried to blocked any incoming packet with destination port 22, with source IP is not 202.0.0.0/8. i've tried to insert:
tcp:in:d=22:s=!202.0.0.0/8
but it doesnt work or i just missconfigured it ?
If it's not been supported yet, could you add this kind of notation (negating an address) ?
TIA
great work!
I tried to blocked any incoming packet with destination port 22, with source IP is not 202.0.0.0/8. i've tried to insert:
tcp:in:d=22:s=!202.0.0.0/8
but it doesnt work or i just missconfigured it ?
If it's not been supported yet, could you add this kind of notation (negating an address) ?
TIA
great work!