The RAF will block unsolicited connections, however return packets will be
allowed.  You can create a corresponding outbound filter if you need to
block that way too.

Chris


-----Original Message-----
From: Christopher A. Congdon [mailto:[EMAIL PROTECTED] 
Sent: Tuesday, November 18, 2003 4:58 PM
To: [EMAIL PROTECTED]
Subject: [gb-users] Blocking IP's

I have a question...



I have a filter setup in my RAF:



5 # Block problem users/Spammers
       Deny   warning ANY ALL
          from Problems
            to ANY_IP





OBJECTS:
    7      Problems - Problem IP's destined to be blocked
              Index  Member
              -----  ------------------------------
              1      211.206.106.0/24
              2      66.214.28.0/24
              3      63.148.99.224/27
              4      65.118.41.192/27
              5      66.150.40.0/24
              6      64.94.110.0/24
              7      216.220.52.224/27
              8      63.175.146.12





I'm wondering if I don't have this setup like I think I do. I can ping
these IP addresses just fine from inside my firewall. In theory, I
shouldn't be able to get a response from them right? Since the firewall
is supposed to be blocking these IP's from talking to it...



If I haven't done this right, could someone please enlighten me?



Thanks.



Christopher Congdon

Network Engineer

Congdon.WEB

[EMAIL PROTECTED]

http://www.congdonweb.com

317-920-9601

------------------------------------------------------
To unsubscribe:           [EMAIL PROTECTED]
For additional commands:         [EMAIL PROTECTED]
Archive:  http://archives.gnatbox.com/gb-users/

------------------------------------------------------
To unsubscribe:           [EMAIL PROTECTED]
For additional commands:         [EMAIL PROTECTED]
Archive:  http://archives.gnatbox.com/gb-users/

Reply via email to