Quote Originally Posted by heavyfreak View Post
how to you block a country, or is this only in Cisco equipment. Are there standard IP / subnets I can place a deny rule for that would mock this feature?

do you have any other recommendations for checking open ports or just the plain old telnet (port)

Note:

even if per say the did mange to crack the login and password. Would it in theory still deny them being there wan is not matching or is the simple fact they get a login box suggesting that they would beable to access. In short. When accessing an ftp site. That has everyone denyed, does it still give a login prompt?
For port scanning use nmap. But remember you have to have open ports.

For blocking and entire country. Not exactly what I meant. Sorry. I'd probably block
118.216.0.0 to 118.223.255.255 (Lookup via dnsstuff.com)

Most important DMZ!