Hi,

Is there a utility that will allow me to inject an IP#/port# into a
hash (or similiar structure) table that the kernel can consult to
determine if it should drop an incoming connection? I am trying to
stop the new worm that is out there. I have about 8000 and growing
hosts that I need to block. I have tried ipfw but it *really* slows
down the machine. For now I am just adding a route to 127.0.0.1 for
the bad IP#'s, but what I really want is to just block them for port
80, not blackhole them for all services.
  
thanks,
-joe


To Unsubscribe: send mail to [EMAIL PROTECTED]
with "unsubscribe freebsd-net" in the body of the message

Reply via email to