[firewall4] Si on mets les règles utilisant les module owner avant la conntrack, ça ne marche pas...
This commit is contained in:
parent
4362755898
commit
24ff398376
1 changed files with 1 additions and 1 deletions
|
@ -855,10 +855,10 @@ class firewall_zamok(firewall_base):
|
|||
chain = 'OUTPUT'
|
||||
self.add(table, chain , '-d 224.0.0.0/4 -j DROP')
|
||||
admin_vlan_chain = self.admin_vlan(table)
|
||||
self.add(table, chain, '-m state --state RELATED,ESTABLISHED -j ACCEPT')
|
||||
for net in NETs['adm']:
|
||||
self.add(table, chain, '-d %s -j %s' % (net, admin_vlan_chain))
|
||||
self.add(table, chain, '-o lo -j ACCEPT')
|
||||
self.add(table, chain, '-m state --state RELATED,ESTABLISHED -j ACCEPT')
|
||||
self.add(table, chain, '-j %s' % self.blacklist_output(table))
|
||||
|
||||
return
|
||||
|
|
Loading…
Add table
Add a link
Reference in a new issue