mirror of
https://gitlab.com/shorewall/code.git
synced 2025-04-03 04:10:58 +02:00
Removed Common File And Mondified Ping Rules
git-svn-id: https://shorewall.svn.sourceforge.net/svnroot/shorewall/trunk@502 fbd18981-670d-0410-9b5c-8dc0c1a9a2bb
This commit is contained in:
parent
78d8a643fb
commit
db64cd9a8a
@ -249,8 +249,8 @@ ACCEPT loc dmz tcp 22
|
|||||||
ACCEPT dmz net tcp 53
|
ACCEPT dmz net tcp 53
|
||||||
ACCEPT dmz net udp 53
|
ACCEPT dmz net udp 53
|
||||||
#
|
#
|
||||||
# Make ping work between the DMZ, net and local zone (assumes that the loc->
|
# Make ping work bi-directionally between the dmz, net, Firewall and local zone
|
||||||
# net policy is ACCEPT).
|
# (assumes that the loc-> net policy is ACCEPT).
|
||||||
#
|
#
|
||||||
ACCEPT net fw icmp 8
|
ACCEPT net fw icmp 8
|
||||||
ACCEPT loc fw icmp 8
|
ACCEPT loc fw icmp 8
|
||||||
@ -258,6 +258,8 @@ ACCEPT dmz fw icmp 8
|
|||||||
ACCEPT loc dmz icmp 8
|
ACCEPT loc dmz icmp 8
|
||||||
ACCEPT dmz loc icmp 8
|
ACCEPT dmz loc icmp 8
|
||||||
ACCEPT dmz net icmp 8
|
ACCEPT dmz net icmp 8
|
||||||
|
ACCEPT fw loc icmp 8
|
||||||
|
ACCEPT fw dmz icmp 8
|
||||||
ACCEPT net dmz icmp 8 # Only with Proxy ARP and
|
ACCEPT net dmz icmp 8 # Only with Proxy ARP and
|
||||||
ACCEPT net loc icmp 8 # static NAT
|
ACCEPT net loc icmp 8 # static NAT
|
||||||
#LAST LINE -- ADD YOUR ENTRIES BEFORE THIS ONE -- DO NOT REMOVE
|
#LAST LINE -- ADD YOUR ENTRIES BEFORE THIS ONE -- DO NOT REMOVE
|
||||||
|
@ -230,11 +230,11 @@ ACCEPT fw net udp 53
|
|||||||
#
|
#
|
||||||
ACCEPT loc fw tcp 22
|
ACCEPT loc fw tcp 22
|
||||||
#
|
#
|
||||||
# Accept Ping Ubiquitously
|
# Allow Ping To And From Firewall
|
||||||
#
|
#
|
||||||
ACCEPT loc fw icmp 8
|
ACCEPT loc fw icmp 8
|
||||||
ACCEPT net fw icmp 8
|
ACCEPT net fw icmp 8
|
||||||
#
|
ACCEPT fw loc icmp 8
|
||||||
# All ICMP are accepted fw->all
|
ACCEPT fw net icmp 8
|
||||||
#
|
#
|
||||||
#LAST LINE -- ADD YOUR ENTRIES BEFORE THIS ONE -- DO NOT REMOVE
|
#LAST LINE -- ADD YOUR ENTRIES BEFORE THIS ONE -- DO NOT REMOVE
|
||||||
|
Loading…
Reference in New Issue
Block a user