iptables address range -

Bob Goodwin bobgoodwin at wildblue.net
Tue Feb 16 17:00:07 UTC 2016


I have a rule:

# config rule
     option src lan
     option dest wan
     option src_ip 192.168.1.150
     option proto all
     option extra '-m time --weekdays 
Sat,Sun,Mon,Tue,Wed,Thu,Fri --timestart 
05:00 --timestop 24:00'
     option target REJECT

Rather than have several similar rules 
for different ip's it would be 
convenient if I could just specify a 
range of addresses on my LAN.

I tried several variations on things I 
found in a wiki like:

# config rule
         option src      lan
         option iprange  --src-range 
192.168.1.4-192.168.1.50
         option dest     wan
         option proto icmp
         option target   DROP

But get "parse errors" when restarting 
iptables with everything I've tried. 
Obviously I'm in over my head here, just 
trying to follow examples.

Any help is appreciated,

Bob

-- 
Bob Goodwin - Zuni, Virginia, USA
http://www.qrz.com/db/W2BOD
box10  FEDORA-23/64bit LINUX XFCE POP3



More information about the users mailing list