forked from extern/shorewall_code
Detect degenerate addr:port[-range] in SNAT rules.
Signed-off-by: Tom Eastep <teastep@shorewall.net>
This commit is contained in:
parent
4169520d63
commit
c376740329
@ -5573,6 +5573,7 @@ sub process_snat1( $$$$$$$$$$$$ ) {
|
|||||||
} else {
|
} else {
|
||||||
my $ports = $addr;
|
my $ports = $addr;
|
||||||
$ports =~ s/^://;
|
$ports =~ s/^://;
|
||||||
|
fatal_error "Missing Address or Port[-range] ($addr)" unless supplied $ports && $ports ne '-';
|
||||||
validate_portpair1( $proto, $ports );
|
validate_portpair1( $proto, $ports );
|
||||||
$addrlist .= " --to-source :$ports";
|
$addrlist .= " --to-source :$ports";
|
||||||
$exceptionrule = do_proto( $proto, '', '' );
|
$exceptionrule = do_proto( $proto, '', '' );
|
||||||
|
Loading…
Reference in New Issue
Block a user