[arch-general] [arch-dev-public] dropping tcp_wrapper support
Andrea Scarpino
andrea at archlinux.org
Sat Jul 16 13:22:19 EDT 2011
On Saturday 16 July 2011 19:09:47 Vic Demuzere wrote:
> I also use the hosts.allow and hosts.deny files. It's a shame that support
> for them will be removed. It's easier than iptables.
I find iptables more easier, and intuitive.
old hosts.allow:
sshd: 192.
ntfs: 192.
iptables:
-A INPUT -j REJECT
-A INPUT -p tcp -s 192.168.0.0/24 --dport ssh -j ACCEPT
-A INPUT -p tcp -s 192.168.0.0/24 --dport nfs -j ACCEPT
-A INPUT -p udp -s 192.168.0.0/24 --dport nfs -j ACCEPT
--
Andrea
More information about the arch-general
mailing list