forked from extern/shorewall_code
Don't apply rate limiting twice in ACCEPT+ rules
Signed-off-by: Tom Eastep <teastep@shorewall.net>
This commit is contained in:
parent
c030bc900c
commit
edaf541850
@ -1182,9 +1182,9 @@ sub process_rule1 ( $$$$$$$$$$$$$ ) {
|
|||||||
#
|
#
|
||||||
# Generate Fixed part of the rule
|
# Generate Fixed part of the rule
|
||||||
#
|
#
|
||||||
if ( ( $actiontype & ( NATRULE | NATONLY ) ) == NATRULE ) {
|
if ( $actiontype & ( NATRULE | NONAT ) && ! ( $actiontype & NATONLY ) ) {
|
||||||
#
|
#
|
||||||
# Don't apply rate limiting twice
|
# Either a DNAT, REDIRECT or ACCEPT+ rule; don't apply rate limiting twice
|
||||||
#
|
#
|
||||||
$rule = join( '',
|
$rule = join( '',
|
||||||
do_proto($proto, $ports, $sports),
|
do_proto($proto, $ports, $sports),
|
||||||
|
Loading…
Reference in New Issue
Block a user