02-27-2014
[SOLVED] AFWall+ iptables help
I am attempting to block connection to a specific BSSID. My friend's son has been getting around the access restrictions I set for the family on my friend's behalf (I have Tomato running on his Linksys), and his son has access to the neighbour's wifi. I want to be able to block the connection to this wifi. I am experimenting with this at home by trying to block my phone from accessing my router. I tried this IP table first:
$IPTABLES -A INPUT -m mac --mac-source 00:00:00:00:00:00 -j DROP
(of course, the 00:00:00:00:00:00 represents the actual MAC address which I am not posting here; and I used all caps for the address)
I still had access to the internet.
I also tried:
$IPTABLES -A INPUT -m mac --mac-source 00:00:00:00:00:00 -j REJECT
Still had access. Though this is not ideal (because the public IP is dynamic and I have no access to the neighbour's router to add a dynamic dns address to implement this should I go this route), I then tried my public IP address:
$IPTABLES -I INPUT -s 11.222.33.44 -j DROP
I still had access to the internet through my router. So I tried this iptable for the fun of it:
$IPTABLES -I INPUT -s 11.222.33.44 -j REJECT
I could still access the internet. Is it even possible to do what I'm trying to do?
P.S. - My phone, as well as my friend's son's phone is rooted.
Last edited by 3happypenguins; 02-27-2014 at 11:55 AM..
Reason: code tags
8 More Discussions You Might Find Interesting
1. AIX
Generally, most people, I guess, go from 5.3 ML4 Directly to TL 7. So they may never run into this issue.
For the rest of us, here is the resolution of my problem in going from ML6 to TL7.
Apparently with the change from ML to TL IBM added a "BuildDate Verification" routine into... (1 Reply)
Discussion started by: mrmurdock
1 Replies
2. Shell Programming and Scripting
i have two files as
file1:
1
2
3
file2:
a
b
c
and the output should be:
file3:
1~a
2~b
3~c (1 Reply)
Discussion started by: mlpathir
1 Replies
3. UNIX for Advanced & Expert Users
Hello,
I'm having problem with an iptables rule. It seems that on one of two systems on the nat table, the INPUT chain doesn't exist for some strange reason.
I get the error below:
# iptables -t nat -A INPUT -j ACCEPT
iptables: No chain/target/match by that name.
Here is my kernel on... (0 Replies)
Discussion started by: Narnie
0 Replies
4. Shell Programming and Scripting
Hi,
I am using below script to get the below given output. But i am wondering how to pick the names from below output.
Script:
echo "dis ql(*) cluster(CT.CL.RIBRSBT3)"| runmqsc CT.QM.701t8|egrep QUEUE|sed -e 's/QUEUE(/ /'|sed -e 's/)/ /'
Output:
... (10 Replies)
Discussion started by: darling
10 Replies
5. Shell Programming and Scripting
Hi, I am trying to permutate each column (Except for IDS).
file.txt
FID IID TOAST1 TOAST2 TOAST3
ID3 ID3 1 -9 2
ID4 ID4 2 1 1
ID1 ID1 -9 -9 1
ID8 ID8 1 1 -9
ID12 ID12 1 2 2
for toast1 column, there are two 1's, two 2's and one -9. Having the same number of denominations,... (2 Replies)
Discussion started by: johnkim0806
2 Replies
6. UNIX for Dummies Questions & Answers
Hi all,
I have two doms on my machine. I boot my machine from an rfs in one dom1 and mount the other rfs in the other dom2 at /media. Now I wanted to restrict access of users on dom2 to only their home directories. I do not want them to access any other directories on dom1 or dom2. So I mounted... (2 Replies)
Discussion started by: sai2krishna
2 Replies
7. Shell Programming and Scripting
Hello,
This is really breaking my head. I request you help to solve this problem.
I have a list of files at the source directory (/tmp) as below,
NewTransfer_20131202_APAC.dat
NewTransferFile_20131202_APAC.dat
NewTransfer_20131203_APAC.dat
NewTransferFile_20131203_APAC.dat... (3 Replies)
Discussion started by: sravicha
3 Replies
8. UNIX for Dummies Questions & Answers
Hi,
One of our old Digital Alpha Server has died (CPU Failure). I want to recover a file from that server. Backups were done via Networker, however, cross platform recovery is not supported and I don't have any other TRU64 server available.
Is there a VM or Emulator available which can get... (1 Reply)
Discussion started by: Mack1982
1 Replies
LEARN ABOUT DEBIAN
ost_ipv6host
ost::IPV6Host(3) Library Functions Manual ost::IPV6Host(3)
NAME
ost::IPV6Host -
This object is used to hold the actual and valid internet address of a specific host machine that will be accessed through a socket.
SYNOPSIS
#include <address.h>
Inherits ost::IPV6Address.
Public Member Functions
IPV6Host (const char *host=NULL)
Create a new host address for a specific internet host.
IPV6Host (struct in6_addr addr)
Convert a system socket binary address such as may be returned through the accept() call or getsockpeer() into an internet host address
object.
IPV6Host & operator&= (const IPV6Mask &mask)
Mask the internet host address object with a network mask address.
Friends
class __EXPORT IPV6Mask
__EXPORT IPV6Host operator& (const IPV6Host &addr, const IPV6Mask &mask)
Additional Inherited Members
Detailed Description
This object is used to hold the actual and valid internet address of a specific host machine that will be accessed through a socket.
Author:
David Sugar dyfet@ostel.com Address of a specific Internet host machine.
Constructor & Destructor Documentation
ost::IPV6Host::IPV6Host (const char *host = NULL)
Create a new host address for a specific internet host. The internet host can be specified in a null terminated ASCII string and include
either the physical host address or the DNS name of a host machine. Hence, an IPV6Host ('www.voxilla.org') can be directly declaired in
this manner.
Defaults to the IP address that represents the interface matching 'gethostname()'.
Parameters:
host dns or physical address of an Internet host.
ost::IPV6Host::IPV6Host (struct in6_addraddr)
Convert a system socket binary address such as may be returned through the accept() call or getsockpeer() into an internet host address
object. Parameters:
addr binary address of internet host.
Member Function Documentation
IPV6Host& ost::IPV6Host::operator&= (const IPV6Mask &mask)
Mask the internet host address object with a network mask address. This is commonly used to coerce an address by subnet.
Friends And Related Function Documentation
friend class __EXPORT IPV6Mask [friend]
__EXPORT IPV6Host operator& (const IPV6Host &addr, const IPV6Mask &mask) [friend]
Author
Generated automatically by Doxygen for GNU CommonC++ from the source code.
GNU CommonC++ Sat Jun 23 2012 ost::IPV6Host(3)