- It's possible to build nice ranged firewall rules:

iptables -I INPUT -i eth0 -p tcp  -m iprange --src-range 12.34.56.78-12.35.56.100 --dport 9421 -j ACCEPT
iptables -A INPUT -i eth0 -p tcp --dport 9421 -j REJECT