2004-01-31 17:11:22 +01:00
|
|
|
#
|
2004-02-21 17:17:21 +01:00
|
|
|
# Shorewall 2.0 /usr/share/shorewall/actions.std
|
2004-01-31 17:11:22 +01:00
|
|
|
#
|
|
|
|
#
|
2004-02-04 23:23:45 +01:00
|
|
|
# Builtin Actions are:
|
|
|
|
#
|
|
|
|
# dropBcast #Silently Drop Broadcast/multicast
|
|
|
|
# dropNonSyn #Silently Drop Non-syn TCP packets
|
2004-05-30 19:58:34 +02:00
|
|
|
# rejNonSyn #Silently Reject Non-syn TCP packets
|
|
|
|
# logNonSyn #Log Non-syn TCP packets with disposition LOG
|
|
|
|
# dLogNonSyn #Log Non-syn TCP packets with disposition DROP
|
|
|
|
# rLogNonSyn #Log Non-syn TCP packets with disposition REJECT
|
|
|
|
#
|
|
|
|
# The NonSyn logging builtins log at the level specified by LOGNEWNOTSYN in
|
|
|
|
# shorewall.conf. If that option isn't specified then 'info' is used.
|
2004-02-04 23:23:45 +01:00
|
|
|
#
|
|
|
|
#ACTION
|
|
|
|
|
2004-01-31 17:11:22 +01:00
|
|
|
DropSMB #Silently Drops Microsoft SMB Traffic
|
|
|
|
RejectSMB #Silently Reject Microsoft SMB Traffic
|
|
|
|
DropUPnP #Silently Drop UPnP Probes
|
|
|
|
RejectAuth #Silently Reject Auth
|
|
|
|
DropPing #Silently Drop Ping
|
|
|
|
DropDNSrep #Silently Drop DNS Replies
|
|
|
|
|
|
|
|
AllowPing #Accept Ping
|
|
|
|
AllowFTP #Accept FTP
|
|
|
|
AllowDNS #Accept DNS
|
|
|
|
AllowSSH #Accept SSH
|
|
|
|
AllowWeb #Allow Web Browsing
|
|
|
|
AllowSMB #Allow MS Networking
|
|
|
|
AllowAuth #Allow Auth (identd)
|
|
|
|
AllowSMTP #Allow SMTP (Email)
|
|
|
|
AllowPOP3 #Allow reading mail via POP3
|
|
|
|
AllowIMAP #Allow reading mail via IMAP
|
|
|
|
AllowTelnet #Allow Telnet Access (not recommended for use over the
|
|
|
|
#Internet)
|
2004-02-07 23:36:07 +01:00
|
|
|
AllowVNC #Allow VNC viewer->server, Displays 0-9
|
|
|
|
AllowVNCL #Allow VNC server->viewer in listening mode
|
2004-01-31 17:11:22 +01:00
|
|
|
AllowNTP #Allow Network Time Protocol (ntpd)
|
|
|
|
AllowRdate #Allow remote time (rdate).
|
|
|
|
AllowNNTP #Allow network news (Usenet).
|
|
|
|
AllowTrcrt #Allows Traceroute (20 hops)
|
2004-02-02 21:15:44 +01:00
|
|
|
AllowSNMP #Allows SNMP (including traps)
|
2004-02-13 18:30:24 +01:00
|
|
|
AllowPCA #Allows PCAnywhere (tm)
|
2004-01-31 17:11:22 +01:00
|
|
|
|
2004-02-04 23:23:45 +01:00
|
|
|
Drop:DROP #Common Action for DROP policy
|
|
|
|
Reject:REJECT #Common Action for REJECT policy
|
2004-01-31 17:11:22 +01:00
|
|
|
#LAST LINE - ADD YOUR ENTRIES ABOVE THIS ONE - DO NOT REMOVE
|