|
|
@ -295,6 +295,7 @@ COMMIT |
|
|
|
-A FILTERS -p udp -m conntrack --ctstate NEW -m udp --dport 51821 -j ACCEPT |
|
|
|
-A FILTERS -p udp -m conntrack --ctstate NEW -m udp --dport 51821 -j ACCEPT |
|
|
|
-A FILTERS -m conntrack --ctstate INVALID -j DROP |
|
|
|
-A FILTERS -m conntrack --ctstate INVALID -j DROP |
|
|
|
-A FILTERS -j REJECT |
|
|
|
-A FILTERS -j REJECT |
|
|
|
|
|
|
|
-A FILTERS -j RETURN |
|
|
|
COMMIT |
|
|
|
COMMIT |
|
|
|
``` |
|
|
|
``` |
|
|
|
|
|
|
|
|
|
|
@ -331,6 +332,7 @@ COMMIT |
|
|
|
-A FILTERS -p tcp -m conntrack --ctstate NEW -m tcp --dport 443 --tcp-flags FIN,SYN,RST,ACK SYN -j ACCEPT |
|
|
|
-A FILTERS -p tcp -m conntrack --ctstate NEW -m tcp --dport 443 --tcp-flags FIN,SYN,RST,ACK SYN -j ACCEPT |
|
|
|
-A FILTERS -m conntrack --ctstate INVALID -j DROP |
|
|
|
-A FILTERS -m conntrack --ctstate INVALID -j DROP |
|
|
|
-A FILTERS -j REJECT |
|
|
|
-A FILTERS -j REJECT |
|
|
|
|
|
|
|
-A FILTERS -j RETURN |
|
|
|
-A OUTPUT -o lo -j ACCEPT |
|
|
|
-A OUTPUT -o lo -j ACCEPT |
|
|
|
-A OUTPUT -o eth0 -j ACCEPT |
|
|
|
-A OUTPUT -o eth0 -j ACCEPT |
|
|
|
-A OUTPUT -o eth1 -j ACCEPT |
|
|
|
-A OUTPUT -o eth1 -j ACCEPT |
|
|
|