Added support for custom rules in firewall module.

This commit is contained in:
Timo Mkinen 2009-09-14 20:39:24 +03:00
parent d86de74c53
commit fec0f3bc73
2 changed files with 6 additions and 0 deletions

View file

@ -11,6 +11,9 @@
<% rule = /(tcp|udp)\/(\d+)( .+)?/.match(rule) -%>
-A INPUT<% if rule[1] == "tcp" %> -m state --state NEW<% end %> -m <%= rule[1] %> -p <%= rule[1] %><% if rule[3] %> -s<%= rule[3] %><% end %> --dport <%= rule[2] %> -j ACCEPT
<% end -%>
<% firewall_custom.each do |rule| -%>
<%= rule %>
<% end -%>
-A INPUT -p tcp -j REJECT --reject-with tcp-reset
-A INPUT -j REJECT --reject-with icmp-port-unreachable
-A FORWARD -j REJECT --reject-with icmp-host-prohibited