Modifications avec spalma :
- Activation des regles en "-t nat" - Flush des regles specifiques lors du stop avant leurs destructions
This commit is contained in:
parent
3c7c7d8490
commit
63108ad27d
12
minifirewall
12
minifirewall
|
@ -272,7 +272,13 @@ echo 0 > /proc/sys/net/ipv4/ip_forward
|
||||||
# On supprime toutes les regles
|
# On supprime toutes les regles
|
||||||
$IPT -F INPUT
|
$IPT -F INPUT
|
||||||
$IPT -F OUTPUT
|
$IPT -F OUTPUT
|
||||||
#$IPT -t nat -F
|
$IPT -F LOG_DROP
|
||||||
|
$IPT -F LOG_ACCEPT
|
||||||
|
$IPT -F ONLYTRUSTED
|
||||||
|
$IPT -F ONLYPRIVILEGIED
|
||||||
|
$IPT -F ICMP_STACK
|
||||||
|
$IPT -F NEEDRESTRICT
|
||||||
|
$IPT -t nat -F
|
||||||
$IPT -t mangle -F
|
$IPT -t mangle -F
|
||||||
|
|
||||||
# On accepte tout
|
# On accepte tout
|
||||||
|
@ -296,7 +302,7 @@ echo 0 > /proc/sys/net/ipv4/ip_forward
|
||||||
status)
|
status)
|
||||||
|
|
||||||
$IPT -L -n -v --line-numbers
|
$IPT -L -n -v --line-numbers
|
||||||
#$IPT -t nat -L -n -v --line-numbers
|
$IPT -t nat -L -n -v --line-numbers
|
||||||
$IPT -t mangle -L -n -v --line-numbers
|
$IPT -t mangle -L -n -v --line-numbers
|
||||||
;;
|
;;
|
||||||
|
|
||||||
|
@ -305,7 +311,7 @@ echo 0 > /proc/sys/net/ipv4/ip_forward
|
||||||
echo "On remet les compteurs a zero..."
|
echo "On remet les compteurs a zero..."
|
||||||
|
|
||||||
$IPT -Z
|
$IPT -Z
|
||||||
#$IPT -t nat -Z
|
$IPT -t nat -Z
|
||||||
$IPT -t mangle -Z
|
$IPT -t mangle -Z
|
||||||
;;
|
;;
|
||||||
|
|
||||||
|
|
Loading…
Reference in a new issue