How I block internet access for a concrete program?

I need block internet access for a program but i don't know why I can configure the firewall for it can do it

Please give more detail on what exactly you want to achieve: deny outgoing connections to a program? Which program? Who will run this program? The firewall is probably not able to do what you need, but "unshare -n <program>" may fit your need, or maybe you need to create a SELinux module for this.</program>

What's the thing, @tonioc? LOL

The most secure solution is probably (as I've done this on FreeBSD Jails but not on Fedora) is to put the application in an LXC app container and disable network for that container.

Hi! Welcome to Ask Fedora!

If you can ascertain what ports your program uses, you should be able to block these and as a result block access to your program.

Can you elaborate on how a user can find the ports that a program uses ? Thanks.

I didn't add the info because I'm not aware of a standard way of doing this. More often than not you need to read the documentation which may or many not list the required ports. Some applications also use dynamic ports when required, in which case it's much harder to pin down one port. :(

Maybe add the netstat -anp|more command to the answer?

