NetFilter
[Top] [All Lists]

RE: Accept DNS Suffix

To: "'Dominic Caputo'" <jec6jec6@gmail.com>, <netfilter@lists.netfilter.org>
Subject: RE: Accept DNS Suffix
From: "John Arthur" <lists@davey.net.au>
Date: Wed, 21 Mar 2007 10:35:31 +1030
Cc:
Delivered-to: sp-com-lists@consult.net
Delivered-to: netfilter-list1@securepoint.com
Importance: Normal
In-reply-to: <000f01c76a83$f8563dd0$6f05b00a@au.schpac.local>
List-archive: </pipermail/netfilter>
List-help: <mailto:netfilter-request@lists.netfilter.org?subject=help>
List-id: General discussion and user questions <netfilter.lists.netfilter.org>
List-post: <mailto:netfilter@lists.netfilter.org>
List-subscribe: <https://lists.netfilter.org/mailman/listinfo/netfilter>, <mailto:netfilter-request@lists.netfilter.org?subject=subscribe>
List-unsubscribe: <https://lists.netfilter.org/mailman/listinfo/netfilter>, <mailto:netfilter-request@lists.netfilter.org?subject=unsubscribe>
Reply-to: lists@davey.net.au
Sender: netfilter-bounces@lists.netfilter.org
Dominic

> I currently have an ISP that has multiple address ranges that 
> I wish to 
> accept in my iptables ruleset. Is it possible for me to use 
> the DNS Suffix 
> instead of the actual ip as they are currently dynamically 
> assigned. e.g. 
> iptables -s nsw.bigpond.net.au   (current assigned address is 
> cpe-203-45-103-100.nsw.bigpond.net.au).

 
 dig -t ptr 254.127.45.203.in-addr.arpa

2 minutes with dig.. Tells me that Bigponds block for nsw is
203.45.64.0/18

CPE-203-45-64-0.nsw.bigpond.net.au.
CPE-203-45-127-255.nsw.bigpond.net.au.


Which is what you want but I'm not sure I'd want to let all the bots
through my firewall

John





<Prev in Thread] Current Thread [Next in Thread>