Removed Common File And Mondified Ping Rules

git-svn-id: https://shorewall.svn.sourceforge.net/svnroot/shorewall/trunk@502 fbd18981-670d-0410-9b5c-8dc0c1a9a2bb
This commit is contained in:
frannie 2003-03-13 01:15:49 +00:00
parent 78d8a643fb
commit db64cd9a8a
2 changed files with 7 additions and 5 deletions

View File

@ -249,8 +249,8 @@ ACCEPT loc dmz tcp 22
ACCEPT dmz net tcp 53 ACCEPT dmz net tcp 53
ACCEPT dmz net udp 53 ACCEPT dmz net udp 53
# #
# Make ping work between the DMZ, net and local zone (assumes that the loc-> # Make ping work bi-directionally between the dmz, net, Firewall and local zone
# net policy is ACCEPT). # (assumes that the loc-> net policy is ACCEPT).
# #
ACCEPT net fw icmp 8 ACCEPT net fw icmp 8
ACCEPT loc fw icmp 8 ACCEPT loc fw icmp 8
@ -258,6 +258,8 @@ ACCEPT dmz fw icmp 8
ACCEPT loc dmz icmp 8 ACCEPT loc dmz icmp 8
ACCEPT dmz loc icmp 8 ACCEPT dmz loc icmp 8
ACCEPT dmz net icmp 8 ACCEPT dmz net icmp 8
ACCEPT fw loc icmp 8
ACCEPT fw dmz icmp 8
ACCEPT net dmz icmp 8 # Only with Proxy ARP and ACCEPT net dmz icmp 8 # Only with Proxy ARP and
ACCEPT net loc icmp 8 # static NAT ACCEPT net loc icmp 8 # static NAT
#LAST LINE -- ADD YOUR ENTRIES BEFORE THIS ONE -- DO NOT REMOVE #LAST LINE -- ADD YOUR ENTRIES BEFORE THIS ONE -- DO NOT REMOVE

View File

@ -230,11 +230,11 @@ ACCEPT fw net udp 53
# #
ACCEPT loc fw tcp 22 ACCEPT loc fw tcp 22
# #
# Accept Ping Ubiquitously # Allow Ping To And From Firewall
# #
ACCEPT loc fw icmp 8 ACCEPT loc fw icmp 8
ACCEPT net fw icmp 8 ACCEPT net fw icmp 8
# ACCEPT fw loc icmp 8
# All ICMP are accepted fw->all ACCEPT fw net icmp 8
# #
#LAST LINE -- ADD YOUR ENTRIES BEFORE THIS ONE -- DO NOT REMOVE #LAST LINE -- ADD YOUR ENTRIES BEFORE THIS ONE -- DO NOT REMOVE