I thank you, and added this to my personal notebook.
But as an afterthought it occured that dynamic IP numbers would make it difficult to deny any single user without denying an entire at least class C network.
 As a result I've implemented a different httpd deamon which allows me to deny access based on User-Agent, which is probably a "neater" way to deny access to those that use what's known as "download managers".(socket suckers)
Without affecting anyone else on that particular network or even that particular user if using something a bit more civilized(IMHO).


>> Greetings,
>> Asking a question for a change.
>> I need to find out if there's any way to disclude any particular class B or class C network from accessing thttpd through muLinux.
>> winsor
>ipfwadm -I -i reject -S -P tcp -D 0/0 80
>In this example, every coming from 192.168.2.* and going to port 80/tcp is
>blocked in input (-I). If you wish to block also forwarding (for example,
>to internet), the same line but -I -> -F.
>Please, try also the script "ipf" in muLinux: it is a sort of "fdisk"
>for IP filtering.
