diff options
-rw-r--r-- | infest/skel/etc/iptables/rules.v4 | 28 | ||||
-rw-r--r-- | retiolum/hosts/raspafari | 2 |
2 files changed, 29 insertions, 1 deletions
diff --git a/infest/skel/etc/iptables/rules.v4 b/infest/skel/etc/iptables/rules.v4 new file mode 100644 index 00000000..cda4b903 --- /dev/null +++ b/infest/skel/etc/iptables/rules.v4 @@ -0,0 +1,28 @@ +# Sane IPTABLES Rules, retiolum-permissive, world-enforcing +*nat +:PREROUTING ACCEPT [262534:163260473] +:POSTROUTING ACCEPT [5060049:305386323] +:OUTPUT ACCEPT [5060049:305386323] +COMMIT + +*mangle +:PREROUTING ACCEPT [41358433:26228470872] +:INPUT ACCEPT [41358389:26228463060] +:FORWARD ACCEPT [0:0] +:OUTPUT ACCEPT [37015162:23438396300] +:POSTROUTING ACCEPT [37015162:23438396300] +COMMIT + +*filter +:INPUT DROP [9:3336] +:FORWARD DROP [0:0] +:OUTPUT ACCEPT [821:311282] +-A INPUT -i lo -j ACCEPT +-A INPUT -i retiolum -j ACCEPT +-A INPUT -m state --state RELATED,ESTABLISHED -j ACCEPT +-A INPUT -p tcp -m tcp --dport 22 -j ACCEPT +-A INPUT -p tcp -m tcp --dport 25 -j ACCEPT +-A INPUT -p tcp -m tcp --dport 80 -j ACCEPT +-A INPUT -p tcp -m tcp --dport 443 -j ACCEPT +-A INPUT -p tcp -m tcp --dport 655 -j ACCEPT +COMMIT diff --git a/retiolum/hosts/raspafari b/retiolum/hosts/raspafari index d3c2e098..1e1b4850 100644 --- a/retiolum/hosts/raspafari +++ b/retiolum/hosts/raspafari @@ -1,5 +1,5 @@ Subnet = 10.243.0.156 -Subnet = 42:9571:c499:5adc:f9e1:8982:3cb1:cf91/128 +#Subnet = 42:9571:c499:5adc:f9e1:8982:3cb1:cf91/128 -----BEGIN RSA PUBLIC KEY----- MIIBCgKCAQEA14OlKZwL5+ZMwxoMTuTpt+PLr1Mp6pIlfIdYfkkx1od6c3fuvNi6 |