[TriLUG] Host Blocking

Greg Cox glcox at pobox.com
Wed Jan 5 21:55:09 EST 2005


> What would be the best method of blocking access from a particular part of the 
> world, or for that matter allowing access from only US based ip ranges.

A fast hack (and this is all hackish, so) would be to get a list of 'Class A'
blocks and kill ones allocated to places you don't like.  At a glance, Japan
has 43.x, APNIC has 61, 202-203, 210-211, 218-221.  RIPE has 51, 62, 80-81,
193-195, 212-213, and 217.

The wisdom of this approach (both the question and the answer) to security
is questionable.

But you're officially allowed to put a 'Power of Pride' bumper sticker on
the box if you iptable this up.




More information about the TriLUG mailing list