Security Basics mailing list archives

Re: Root kits and host.deny


From: Jeff Davis <jeff () dynamictelecard com>
Date: Thu, 08 Dec 2005 12:34:00 -0600



Frynge.com Support wrote:

1:  Does anyone know without a firewall how to block an ip through the
hosts.deny or any other secure method?

is it
ALL: 211.174.53.89 : DENY


In your hosts.deny, it would be:
ALL : 211.174.53.89

It would be better to add ALL : ALL to your hosts.deny
and then add what you need to your hosts.allow file.

I'm not sure why you were told that a firewall would
'suck up too much bandwidth' though.

You should set up IPtables and think
about getting a hardware firewall.

-Jeff



Current thread: