Thoreau: why do you say iptables does not like abbreviations of his subnets? Which abbreviations do you refer to? IOS is, as far as I know, a Cisco thing.
varun_saa: It's really up to you. If you need <=254 IPs, use /24. If you need >254 & <=65534 IPs, use /16. Just be consistent.
|