From mboxrd@z Thu Jan 1 00:00:00 1970 From: Askar Ali Khan Subject: rules suggestion Date: Thu, 22 Jul 2004 10:43:07 +0500 Sender: netfilter-admin@lists.netfilter.org Message-ID: Mime-Version: 1.0 Content-Transfer-Encoding: 7bit Return-path: Errors-To: netfilter-admin@lists.netfilter.org List-Help: List-Post: List-Subscribe: , List-Id: List-Unsubscribe: , List-Archive: Content-Type: text/plain; charset="us-ascii" To: netfilter Hi all Here are few rules from overs firewall, please let me know is this is the proper way to deal with windowz ports :) iptables -A INPUT -p TCP -s 0/0 -d 0/0 --dport 135:140 -j DROP iptables -A INPUT -p UDP -s 0/0 -d 0/0 --dport 135:140 -j DROP iptables -A FORWARD -p TCP -s 0/0 -d 0/0 --dport 135:140 -j DROP iptables -A FORWARD -p UDP -s 0/0 -d 0/0 --dport 135:140 -j DROP iptables -t nat -A PREROUTING -p TCP -s 0/0 -d 0/0 --dport 135:140 -j DROP iptables -t nat -A PREROUTING -p UDP -s 0/0 -d 0/0 --dport 135:140 -j DROP Or we are unnecessary repeating it on some chains/tables. regards Askar Ali