我无法从测试中获得可靠的结果。但如果我按以下顺序说出规则:
zak@Web:~$sudo ufw status
Status: active
To Action From
-- ------ ----
Anywhere ALLOW 71.64.45.23 <- Allowing
Anywhere DENY ...
Anywhere DENY ...
Anywhere DENY ...
Anywhere DENY ...
Anywhere DENY ...
Anywhere DENY ...
Anywhere DENY ...
Anywhere DENY 71.64.0.0/12 <- Denying
直接 IP 地址是否会取代阻止该 IP 范围的 CIDR?理论上,如果将 IP 设置为位置 1,它实际上不会覆盖 CIDR 吗?
或者UFW 会将其解读为Allow
来自 71.***然后 Deny
因为 CIDR 规则?