Hacker News new | ask | show | jobs
by ehPReth 1433 days ago
Question to you and the broader HN...

Is there a way to allowlist whole ASNs? I know you can't do it directly with like iptables/ebtables/etc but is there a daemon for that that'll watch for changes to them? I'd like to allowlist my cellular provider and my home ISP for example but they have a lot of ranges and sometimes introduce new prefixes

1 comments

I think it would be more convenient to use a VPN like tailscale, or a bastion like teleport.