#!/bin/sh #以下代码可以放到自定义防火墙中. iptables -F input_lan_rule i=0; while true do mac=`uci get dhcp.@host[$i].mac 2>/dev/null`; if [ -z $mac ]; then break; fi echo $mac; iptables -A input_lan_rule -m mac --mac-source $mac -j ACCEPT -m comment --comment "`uci get dhcp.@host[$i].name`" let i++; done iptables -A input_lan_rule -j DROP