Firewall novice question
Available news archives: comp.lang.tcl - comp.lang.python - comp.security.firewalls - sci.crypt - comp.lang.php - comp.lang.javascript
Google
 
Web news.hping.org


comp.security.firewalls archive

Firewall novice question

From: Robert Melson <melsonr@aragorn.rgmhome.net>
Date: Fri Dec 02 2005 - 07:16:14 CET

Just activated ipfw on FreeBSD 5.4 without major problems, have a minimal -
but working - ruleset, that I'd like to expand. My question is this: I know
you can block an ip address or a range of addresses or even a block of ip
addresses (as in ip/mask). All well and good. Is it possible to substitute
a domain, such as example.com, in the rules? Say I want to block all incoming
traffic from example.com, can I write a rule on the order of:

deny all from example.com to me in via <interface>

If I can't do this, I can live with it, but it would surely be convenient.

Thanks for any replies.

Bob Melson

-- 
Robert G. Melson | Rio Grande MicroSolutions | El Paso, Texas
-----
"One of the greatest delusions in the world is the hope that the evils in this world are to be cured by legislation." Thomas Reed
-----
Received on Sat Dec 3 04:19:08 2005