Re: [gentoo-user] [OT] Block multiple IP addresses; iptables or route...reject?

2017-10-05 Thread Walter Dnes
On Thu, Oct 05, 2017 at 10:35:43AM +0100, Mick wrote > There are a few problems with this approach: > > As it has already been mentioned, the Chinese, Ukrainian, et al. IP > address blocks change on an hourly basis. Huh?!? The subdomain names, maybe; but not the country IP address range. The

Re: [gentoo-user] [OT] Block multiple IP addresses; iptables or route...reject?

2017-10-05 Thread Mick
On Wednesday, 4 October 2017 23:49:30 BST mad.scientist.at.la...@tutanota.com wrote: > I have to disagree with the last post. You should most certainly block some > inbound traffic. you should block ports you aren't using. If some ip > addr. or particular provider have a customer trying to bre

Re: [gentoo-user] [OT] Block multiple IP addresses; iptables or route...reject?

2017-10-04 Thread mad.scientist.at.large
I have to disagree with the last post.  You should most certainly block some inbound traffic.  you should block ports you aren't using.  If some ip addr. or particular provider have a  customer trying to break your' machine you want to block the whole isp unless you are serving pages etc.  you

Re: [gentoo-user] [OT] Block multiple IP addresses; iptables or route...reject?

2017-10-04 Thread Mike Gilbert
On Wed, Oct 4, 2017 at 1:28 AM, Walter Dnes wrote: > I have some doubts about massive "hosts" files for adblocking. I > downloaded one that listed 13,148 sites. I fed them through a script > that called "host" for each entry, and saved the output to a text file. > The result was 1,059 addresse

Re: [gentoo-user] [OT] Block multiple IP addresses; iptables or route...reject?

2017-10-04 Thread Lucas Ramage
​> The best tool for this is the pf packet filter, but it runs on FreeBSD. ​It's too bad this still isn't around..​ ​ https://wiki.gentoo.org/wiki/Gentoo_FreeBSD On Wed, Oct 4, 2017 at 11:21 AM, Alan McKinnon wrote: > On 04/10/2017 07:28, Walter Dnes wrote: > > I have some doubts about mass

Re: [gentoo-user] [OT] Block multiple IP addresses; iptables or route...reject?

2017-10-04 Thread Alan McKinnon
On 04/10/2017 07:28, Walter Dnes wrote: > I have some doubts about massive "hosts" files for adblocking. I > downloaded one that listed 13,148 sites. I fed them through a script > that called "host" for each entry, and saved the output to a text file. > The result was 1,059 addresses. Note tha

Re: [gentoo-user] [OT] Block multiple IP addresses; iptables or route...reject?

2017-10-04 Thread R0b0t1
Hello, On Wed, Oct 4, 2017 at 12:28 AM, Walter Dnes wrote: > I have some doubts about massive "hosts" files for adblocking. I > downloaded one that listed 13,148 sites. I fed them through a script > that called "host" for each entry, and saved the output to a text file. > The result was 1,059

[gentoo-user] [OT] Block multiple IP addresses; iptables or route...reject?

2017-10-03 Thread Walter Dnes
I have some doubts about massive "hosts" files for adblocking. I downloaded one that listed 13,148 sites. I fed them through a script that called "host" for each entry, and saved the output to a text file. The result was 1,059 addresses. Note that some adservers have multiple IP address entrie