~mdw
/
firewall
/ blobdiff
commit
grep
author
committer
pickaxe
?
search:
re
summary
|
shortlog
|
log
|
commit
|
commitdiff
|
tree
raw
|
inline
| side by side
local.m4: Reinstate detailed filtering from scary networks.
[firewall]
/
telecaster.m4
diff --git
a/telecaster.m4
b/telecaster.m4
index
716e6b1
..
f3b8f07
100644
(file)
--- a/
telecaster.m4
+++ b/
telecaster.m4
@@
-31,11
+31,15
@@
allowservices inbound tcp \
ident \
ftp ftp_data \
rsync \
ident \
ftp ftp_data \
rsync \
- http https squid \
- git
+ http https squid ssquid
+
+run iptables -A inbound -j ACCEPT \
+ -p udp --destination-port $port_icp \
+ -m limit --limit 10/second --limit-burst 100
## Other interesting things.
dnsresolver inbound
## Other interesting things.
dnsresolver inbound
+dnsserver inbound
m4_divert(-1)
###----- That's all, folks --------------------------------------------------
m4_divert(-1)
###----- That's all, folks --------------------------------------------------