From mboxrd@z Thu Jan 1 00:00:00 1970 Received: from lists.gentoo.org ([140.105.134.102] helo=robin.gentoo.org) by nuthatch.gentoo.org with esmtp (Exim 4.62) (envelope-from ) id 1HCMLu-0005HG-C2 for garchives@archives.gentoo.org; Wed, 31 Jan 2007 20:46:46 +0000 Received: from robin.gentoo.org (localhost [127.0.0.1]) by robin.gentoo.org (8.13.8/8.13.8) with SMTP id l0VKiGmX032298; Wed, 31 Jan 2007 20:44:16 GMT Received: from ug-out-1314.google.com (ug-out-1314.google.com [66.249.92.170]) by robin.gentoo.org (8.13.8/8.13.8) with ESMTP id l0VKangW020186 for ; Wed, 31 Jan 2007 20:36:49 GMT Received: by ug-out-1314.google.com with SMTP id z38so275973ugc for ; Wed, 31 Jan 2007 12:36:49 -0800 (PST) DomainKey-Signature: a=rsa-sha1; c=nofws; d=gmail.com; s=beta; h=received:message-id:date:from:to:subject:mime-version:content-type:content-transfer-encoding:content-disposition; b=Q0/lGKvGFV7bv5nSjv0wiIZ6hZAt425ncGsFOZQ7Xbz3zN5+qmA2E/sajo0/pLU5YGoUJy/9pTUhLLvAw9U/NlFMOUGnP1ynFoh5ntjtdGlaV/xyt5UQEyaWvpJv2YkMKOG3fbDJY8Jzn5E9sG5A+uw8iU/EMzJGyOZ4qN7jTFU= Received: by 10.82.139.17 with SMTP id m17mr302901bud.1170275809117; Wed, 31 Jan 2007 12:36:49 -0800 (PST) Received: by 10.82.118.5 with HTTP; Wed, 31 Jan 2007 12:36:49 -0800 (PST) Message-ID: Date: Wed, 31 Jan 2007 15:36:49 -0500 From: "James Colby" To: gentoo-user@lists.gentoo.org Subject: [gentoo-user] IPtables question Precedence: bulk List-Post: List-Help: List-Unsubscribe: List-Subscribe: List-Id: Gentoo Linux mail X-BeenThere: gentoo-user@gentoo.org Reply-to: gentoo-user@lists.gentoo.org MIME-Version: 1.0 Content-Type: text/plain; charset=ISO-8859-1; format=flowed Content-Transfer-Encoding: 7bit Content-Disposition: inline X-Archives-Salt: 70db0887-7cc4-4972-abf1-73caba4c3375 X-Archives-Hash: 5f5ea1bff16b6f8ca54da97c5fff5222 List members - I have a small home server that I have connected to the internet through a linksys router and cable modem. The linksys router is currently forwarding all ssh traffic to my gentoo box. What I would like to do is set up iptables to only allow ssh logins from a small number of internet hosts, and to reject and log all other ssh attempts. Can someone please help me out with this. All of the tutorials and documentation that I have found are setting up a fully functioning firewall / NAT / proxy, and I think that is a little overkill for my needs. Thanks for any help that you may be able to provide, James -- gentoo-user@gentoo.org mailing list