From 59ac5ad0a094424eced132c00bf2a63606b11413 Mon Sep 17 00:00:00 2001 From: Nicolas Dandrimont Date: Wed, 3 Mar 2010 05:54:55 +0100 Subject: [PATCH] =?UTF-8?q?[firewall]=20Apparemment=20les=20modifs=20pr?= =?UTF-8?q?=C3=A9c=C3=A9dentes=20n'ont=20pas=20r=C3=A9ussi...=20free=20for?= =?UTF-8?q?=20all=20sur=20fx...?= MIME-Version: 1.0 Content-Type: text/plain; charset=UTF-8 Content-Transfer-Encoding: 8bit darcs-hash:20100303045455-ffbb2-d5e0a1ba416c0bdcb1f1055517c5585a06fb7d09.gz --- gestion/gen_confs/firewall.py | 4 +--- 1 file changed, 1 insertion(+), 3 deletions(-) diff --git a/gestion/gen_confs/firewall.py b/gestion/gen_confs/firewall.py index bbdedb8b..16129f6a 100644 --- a/gestion/gen_confs/firewall.py +++ b/gestion/gen_confs/firewall.py @@ -1078,9 +1078,7 @@ class firewall_zamok(firewall_crans) : iptables("-A SERV_OUT_ADM -p udp --dport domain -j ACCEPT") # Pour le nfs (le paquet à laisser passer n'a pas d'owner) - for port in self.nfs_ports: - iptables("-A SERV_OUT_ADM -p tcp --dport %s -d fx.adm.crans.org -j ACCEPT" % port) - iptables("-A SERV_OUT_ADM -p udp --dport %s -d fx.adm.crans.org -j ACCEPT" % port) + iptables("-A SERV_OUT_ADM -d fx.adm.crans.org -j ACCEPT") # Rien d'autre ne passe iptables("-A SERV_OUT_ADM -j REJECT --reject-with icmp-net-prohibited")