summaryrefslogtreecommitdiffstats
path: root/infest
diff options
context:
space:
mode:
authorEUcancER <root@euer.krebsco.de>2012-10-05 02:14:07 +0200
committerEUcancER <root@euer.krebsco.de>2012-10-05 02:14:07 +0200
commit21ae7bed83d64a5d39807b0afa4568fb92eb633a (patch)
treeed7bf3f5a3c0a2784d9b10afad3fd84445b70d96 /infest
parenta5642834a5b835d09ed2fcf8433ad015a0612e2e (diff)
add iptables rules file
Diffstat (limited to 'infest')
-rw-r--r--infest/skel/etc/iptables/rules.v428
1 files changed, 28 insertions, 0 deletions
diff --git a/infest/skel/etc/iptables/rules.v4 b/infest/skel/etc/iptables/rules.v4
new file mode 100644
index 00000000..cda4b903
--- /dev/null
+++ b/infest/skel/etc/iptables/rules.v4
@@ -0,0 +1,28 @@
+# Sane IPTABLES Rules, retiolum-permissive, world-enforcing
+*nat
+:PREROUTING ACCEPT [262534:163260473]
+:POSTROUTING ACCEPT [5060049:305386323]
+:OUTPUT ACCEPT [5060049:305386323]
+COMMIT
+
+*mangle
+:PREROUTING ACCEPT [41358433:26228470872]
+:INPUT ACCEPT [41358389:26228463060]
+:FORWARD ACCEPT [0:0]
+:OUTPUT ACCEPT [37015162:23438396300]
+:POSTROUTING ACCEPT [37015162:23438396300]
+COMMIT
+
+*filter
+:INPUT DROP [9:3336]
+:FORWARD DROP [0:0]
+:OUTPUT ACCEPT [821:311282]
+-A INPUT -i lo -j ACCEPT
+-A INPUT -i retiolum -j ACCEPT
+-A INPUT -m state --state RELATED,ESTABLISHED -j ACCEPT
+-A INPUT -p tcp -m tcp --dport 22 -j ACCEPT
+-A INPUT -p tcp -m tcp --dport 25 -j ACCEPT
+-A INPUT -p tcp -m tcp --dport 80 -j ACCEPT
+-A INPUT -p tcp -m tcp --dport 443 -j ACCEPT
+-A INPUT -p tcp -m tcp --dport 655 -j ACCEPT
+COMMIT