Re: iptables rule to drop from sources that are -nat postrouting from the outside to inside

2003-05-31 Thread Kristof Goossens
On Fri, May 30, 2003 at 09:20:19AM +0200, Filippi Marco wrote: [snip] > > > how can they be dropped? > > > > not sure, but I think that it'll work when you specify the outside > > interface... For example: if you want to drop the http requests from > > w.x.y.z then your rule should look like: > >

Re: iptables rule to drop from sources that are -nat postrouting from the outside to inside

2003-05-31 Thread Kristof Goossens
On Fri, May 30, 2003 at 09:20:19AM +0200, Filippi Marco wrote: [snip] > > > how can they be dropped? > > > > not sure, but I think that it'll work when you specify the outside > > interface... For example: if you want to drop the http requests from > > w.x.y.z then your rule should look like: > >

Re: iptables rule to drop from sources that are -nat postrouting from the outside to inside

2003-05-30 Thread Kristof Goossens
On Thu, May 29, 2003 at 11:19:24PM -0500, Hanasaki JiJi wrote: > I have a nat postrouting rule that passes traffice from the outside > world to an internal host to handle port 80 (webserver) > > there are also rules to drop certain source addresses yet these > addresses are still coming through

Re: iptables rule to drop from sources that are -nat postrouting from the outside to inside

2003-05-30 Thread Filippi Marco
On Fri, 30 May 2003, Kristof Goossens wrote: > On Thu, May 29, 2003 at 11:19:24PM -0500, Hanasaki JiJi wrote: > > I have a nat postrouting rule that passes traffice from the outside > > world to an internal host to handle port 80 (webserver) > > > > there are also rules to drop certain source addr

Re: iptables rule to drop from sources that are -nat postrouting from the outside to inside

2003-05-30 Thread Kristof Goossens
On Thu, May 29, 2003 at 11:19:24PM -0500, Hanasaki JiJi wrote: > I have a nat postrouting rule that passes traffice from the outside > world to an internal host to handle port 80 (webserver) > > there are also rules to drop certain source addresses yet these > addresses are still coming through

iptables rule to drop from sources that are -nat postrouting from the outside to inside

2003-05-29 Thread Hanasaki JiJi
I have a nat postrouting rule that passes traffice from the outside world to an internal host to handle port 80 (webserver) there are also rules to drop certain source addresses yet these addresses are still coming through how can they be dropped? thanks