Archived from groups: comp.security.firewalls (More info?)
"RichLich" <firstname.lastname@example.org> wrote in message
> what is the easiest way in a Netscreen-100, OS 4.0x, to deny access
> from an entire range of IP addresses?
Create an address object for the range with an IP address / mask (eg,
10.15.32.0/24), then use that address object as the source in a deny policy.