[Date Prev][Date Next] [Thread Prev][Thread Next] [Date Index] [Thread Index]

Re: Confirming an iptables rule



Hi!

On Mon, Aug 19, 2002 at 12:43:59PM +1000, Lucas Barbuto wrote:
> iptables -A FORWARD -p TCP -i ${INSIDE_IP} --dport 27374 -j DROP
> iptables -A FORWARD -p UDP -i ${INSIDE_IP} --dport 27374 -j DROP

I'm surprised -i accepted an IP address. 

you'll better do something like

iptables -A FORWARD -p tcp -i ${INSIDE_INTERFACE} --dport 27374 -j DROP
iptables -A FORWARD -p udp -i ${INSIDE_INTERFACE} --dport 27374 -j DROP

to drop everything.

HTH
Frederik Schüler



Reply to: