> /sbin/ipchains -A input -i eth0 -p tcp -d $extip 3306
> -l -j REJECT
> /sbin/ipchains -A input -i eth0 -p udp -d $extip 3306
> -l -j REJECT
> 
> $extip is my external IP..

Try something like...

/sbin/ipchains -A input -p TCP -s ! 192.168.1.0/24 -d 0/0 3306 -j DENY -l
/sbin/ipchains -A input -p UDP -s ! 192.168.1.0/24 -d 0/0 3306 -j DENY -l

where 192.168.1.0/24 is your LAN subnet.

Thanks... Dan.



Keep in touch with http://mandrakeforum.com: 
Subscribe the "[EMAIL PROTECTED]" mailing list.

Reply via email to