X-Git-Url: https://git.distorted.org.uk/~mdw/firewall/blobdiff_plain/eec061c0c560e9bee479a34620b3a399b09d9d3d..8a03622959c862fef4cd46fbcaa9c76e082513d4:/local.m4 diff --git a/local.m4 b/local.m4 index e486605..785a78b 100644 --- a/local.m4 +++ b/local.m4 @@ -143,7 +143,6 @@ defnet househub virtual via housebdry dmz unsafe safe untrusted defnet housebdry virtual via househub hub - noxit dmz ## House hosts. defhost radius @@ -183,6 +182,10 @@ defhost ibanez defhost orange iface wlan0 untrusted iface vpn-radius unsafe +defhost groove + iface eth0 unsafe + iface wlan0 untrusted + iface vpn-radius unsafe defhost gibson hosttype client @@ -199,7 +202,6 @@ defnet colohub virtual via colobdry jump colo defnet colobdry virtual via colohub hub - noxit jump defnet iodine untrusted addr 172.29.198.128/28 via colohub @@ -246,6 +248,8 @@ defnet vpn safe host crybaby 1 ::1:1 host terror 2 ::2:1 host orange 3 ::3:1 + host haze 4 ::4:1 + host groove 5 ::5:1 defnet anycast trusted addr 172.29.199.224/27 2001:ba8:1d9:0::/64 via dmz unsafe safe untrusted jump colo vpn @@ -267,6 +271,14 @@ defhost mango m4_divert(80)m4_dnl ###-------------------------------------------------------------------------- +### Connection tracking helper modules. + +for i in ftp; do + modprobe nf_conntrack_$i +done + +m4_divert(80)m4_dnl +###-------------------------------------------------------------------------- ### Special forwarding exemptions. case $forward in