From 04d6daa3463776bc6906e5bf39706852ca03cba0 Mon Sep 17 00:00:00 2001 From: "bruns@2mbit.com" Date: Sun, 23 Aug 2009 22:46:13 +0000 Subject: [PATCH] More ipv6 fixes --- rc.firewall | 4 ++-- 1 file changed, 2 insertions(+), 2 deletions(-) diff --git a/rc.firewall b/rc.firewall index afb5c4c..fc0b86a 100755 --- a/rc.firewall +++ b/rc.firewall @@ -179,8 +179,8 @@ if [ $IPV6 ]; then $IP6TABLES -A INPUT -m state --state ESTABLISHED,RELATED -j ACCEPT $IP6TABLES -A FORWARD -m state --state ESTABLISHED,RELATED -j ACCEPT $IP6TABLES -A FORWARD -i $IPV6INT -o $IPV6LAN -p tcp --syn -j DROP - $IP6TABLES -A INPUT -i $IPV6INT -o $IPV6LAN -p tcp --syn -j DROP - $IP6TABLES -A INPUT -i $IPV6INT -o $IPV6LAN -p udp ! --dport 32768:65535 -j DROP + $IP6TABLES -A INPUT -i $IPV6INT $IPV6LAN -p tcp --syn -j DROP + $IP6TABLES -A INPUT -i $IPV6INT $IPV6LAN -p udp ! --dport 32768:65535 -j DROP $IP6TABLES -A FORWARD -i $IPV6INT -o $IPV6LAN -p udp ! --dport 32768:65535 -j DROP fi