FWIW. My Netgear ADSL2+ Modem Router DG834 has a hardware firewall that blocks all traffic to/from specified IP addresses when configured to do so - including when accessing mainframes. But this is possibly not what you want. Just my ha'pennyworth.

R.S. wrote:

I need to block connections coming from given IP address or whole subnetwork. It can be limited to one TCP port.

For example, my z/OS has address 10.1.1.1/24
workstation I want to deny has address 10.3.1.1/24 (another subnet)
I want the workstation cannot connect to 10.1.1.1 port 3000. Or cannot connect at all.
As an option I want block any workstation from 10.3.1.nn network.

Answering obvious question: No, I cannot do it on the network router, because I don't manage network. I can manage my /zOS configuration. Not to mention responsiveness.

Any clue?


----------------------------------------------------------------------
For IBM-MAIN subscribe / signoff / archive access instructions,
send email to [email protected] with the message: INFO IBM-MAIN

Reply via email to