allow or deny directive as the final option.
				client-1.example.com, but deny connections from client-2.example.com:
				sshd : client-1.example.com : allow sshd : client-2.example.com : deny
hosts.allow or hosts.deny. Some administrators consider this an easier way of organizing access rules.