I don't use TCP wrappers, but AFAIK they are meant for connections
to your host (not
from it). Furthermore, the daemon you're controlling access to will need to have been linked against
libwrap (unless you're sticking a super-server in front of it, of course). So basically, it sounds like you're using the wrong tool for the job. You'll probably want to be looking at something like a proxy server ACL instead. For example, to do something like this in Squid it would go like:
Code:
acl denied_site dstdomain .example.com
http_access deny denied_site