18.7.2011 11:31, tower kirjoitti: > Hi > > Is there any way of use asterisk as wilcard in iptables rule? > > For example: > > iptables -I OUT_APACHE -d *.fbcdn.com -j ACCEPT > iptables v1.3.3: host/network `*.fbcdn.com' not found > > or > > iptables -I OUT_APACHE -d '*.fbcdn.com' -j ACCEPT > iptables v1.3.3: host/network `*fbcdn.com' not found > > or > > iptables -I OUT_APACHE -d "*.fbcdn.com" -j ACCEPT > iptables v1.3.3: host/network "*.fbcdn.com' not found > > returns error. > > Regards! > iptables uses IP-addresses, but if you enter a DNS-name it tries to resolve it to an IP-address. You have to figure out somehow the netblock/mask for fbcdn.com and enter that. -- Q: How do you stop an elephant from charging? A: Take away his credit cards.
Attachment:
signature.asc
Description: OpenPGP digital signature