iptables rule questions:

Post by Neil Watso » Tue, 05 Jun 2001 22:51:21

I have entered some iptable rules to suppliement Bastille's firewall.  
These are the rules:

#Deny all connections to pop server
#except my remote IP

iptables -A INPUT -m tcp -p tcp -s !$RIP -d $SIP --dport 110 -j DROP

#Deny all connections to sshd server
#except my remote IP

iptables -A INPUT -m tcp -p tcp -s !$RIP -d $SIP --dport 22 -j DROP

However, when I have my ports scanned on someweb sites port 22 and 110 are
still listed as open.  What have I done wrong?

Neil Watson


