Creating IP address sets for use with iptables (etc…)

Create the set like this:

ipset create myips hash:net
ipset add myips 192.168.0.0/16
ipset add myips 10.0.0.0/8
ipset add myips 172.16.0.0/12
ipset add myips 100.64.0.0/10
ipset save -f /etc/ipset.conf

Use it like this:

ipset restore -f /etc/ipset.conf
iptables -A INPUT -m set --match-set myips src -j ACCEPT

Leave a Comment

Your email address will not be published. Required fields are marked *