• 3 Posts
  • 1.85K Comments
Joined 3 年前
cake
Cake day: 2023年6月23日

help-circle
  • You need to understand subnetting. Allowing 192.168.1.0/24 also allows 192.168.1.135/24 In fact 192.168.1.135/24 shouldn’t be valid syntax at all, but it is easier to accept it and then let subnet math fix the mistake.

    I assume your router is 192.168.1.135 for whatever reason, so as long as your router is contained in the configured iptables allowed network, it’ll work with all of the following networks.

    192.168.1.135/32
    192.168.1.134/31
    192.168.1.132/30
    192.168.1.128/29
    192.168.1.128/28
    192.168.1.128/27
    192.168.1.128/26
    192.168.1.128/25
    192.168.1.0/24
    192.168.0.0/23
    … And 22 even larger networks.

    If you don’t configure a subnet mask for the rule, iptables will accept the IP address you put in as a single host, the /32 is implied. The same behavior would be seen using any kind of network filter, though they may not allow you to specify 192.168.1.135/24, they may require a bit boundary, but mathematically, it’s the same.

















  • There is A LOT context missing here. The “speedboat” apparently had at least 10 people in it (4 killed 6 wounded, possibly some unwounded?) The people in the speedboat apparently had some fairly serious armaments. I doubt it was just some pistols as those aren’t very effective at the ranges that boats are engaging on the open water. Additionally there do exist rich Americans that will make trips to Cuba by boat and they are normally allowed even if they are intercepted by Cuban inter-coastal forces. So the fact that this time they fired at the Cuban forces, tells me there was certainly something else happening.

    I fully believe that a bunch of dumbass Floridian boaters would just pop off and fire on another boat after crossing territorial boundaries, 100%.

    These dumb bastards are lucky that other countries aren’t going full Hegseth.

    This kind of take is brain dead though.