Security Consulting
  Unix Administration     Firewall     Intrusion Detection     Network Security     Hacking     MORE     HOME    

Rules

In the following I have some advice for you in order to configure your packet filter. Note that I use the BSD IP Filter notation to give the rules!
  • Deny everything coming from doubleclick:
      block in log quick from 208.211.225.0/24 to any
      block in log quick from 204.253.104.0/16 to any 
      block in log quick from 205.138.3.0/24 to any
      block in log quick from 204.176.177.0/24 to any 
      block in log quick from 208.184.29.150/32 to any
      block in log quick from 208.184.29.170/32 to any
      block in log quick from 208.184.29.190/32 to any
      block in log quick from 209.67.38.101/32 to any
      block in log quick from 209.67.38.106/32 to any
      block in log quick from 208.32.211.230/32 to any
  • Deny unassigned networks which you find at IANA.
  • An example of blocking is at CISCO.


    CopyLeft (l) 2003 by Raffael Marty