On 03/14/2012 12:19 PM, I.S.C. William wrote:
> Hi, in shorewall version 3.4.8 used this rule to block access
> to Facebook through port 443 (https):
> 
> /shorewall/rules:
> 
> REJECT          loc        
> net:69.171.224.12,69.171.224.0/19,69.63.176.0/20,66.220.144.0/20
> <http://69.171.224.0/19,69.63.176.0/20,66.220.144.0/20>        tcp     443
> 
> What I did was block the public IP network segment to fitthrough https.
> Now I use this same rule in version 4.4 and I works already.
> Has anything changed in this period? or how could interpretthe new
> version now?
> 
> I have shorewall 4.4.25.3

Did you put your REJECT rule *before* your ACCEPT rule? You must!

-Tom
-- 
Tom Eastep        \ When I die, I want to go like my Grandfather who
Shoreline,         \ died peacefully in his sleep. Not screaming like
Washington, USA     \ all of the passengers in his car
http://shorewall.net \________________________________________________

Attachment: signature.asc
Description: OpenPGP digital signature

------------------------------------------------------------------------------
Virtualization & Cloud Management Using Capacity Planning
Cloud computing makes use of virtualization - but cloud computing 
also focuses on allowing computing to be delivered as a service.
http://www.accelacomm.com/jaw/sfnl/114/51521223/
_______________________________________________
Shorewall-users mailing list
[email protected]
https://lists.sourceforge.net/lists/listinfo/shorewall-users

Reply via email to