diff --git a/gestion/gen_confs/firewall_new.py b/gestion/gen_confs/firewall_new.py index 629a719f..0491a015 100755 --- a/gestion/gen_confs/firewall_new.py +++ b/gestion/gen_confs/firewall_new.py @@ -761,6 +761,9 @@ class firewall_komaz(firewall_crans) : iptables("-A FORWARD -i %s -j BLACKLIST_DST" % self.eth_ext ) iptables("-A FORWARD -o %s -j BLACKLIST_SRC" % self.eth_ext ) iptables("-A FORWARD -s ! %s -d ! %s -j FILTRE_P2P" % (self.zone_serveur, self.zone_serveur) ) + + # Appartement ENS + iptables("-A FORWARD -i crans.21 -p tcp --tcp-flags SYN,RST SYN -j TCPMSS --set-mss 1456") iptables("-A FORWARD -s %s -j ACCEPT" % NETs['personnel-ens'][0]) iptables("-A FORWARD -d %s -j ACCEPT" % NETs['personnel-ens'][0])