diff --git a/prerun b/prerun new file mode 100755 index 0000000..a9bf588 --- /dev/null +++ b/prerun @@ -0,0 +1 @@ +#!/bin/bash diff --git a/rc.firewall b/rc.firewall index e57f0d6..2efea5e 100755 --- a/rc.firewall +++ b/rc.firewall @@ -19,6 +19,8 @@ if [ $NAT ]; then fi $IPTABLES -F -t raw &>/dev/null +$BASEDIR/prerun + $IPTABLES -A INPUT -i lo -j ACCEPT $IPTABLES -A OUTPUT -o lo -j ACCEPT @@ -61,7 +63,7 @@ done for i in $UDPPORTS; do echo -n "UDP/$i " #$IPTABLES -A INPUT -p udp --dport $i -j ACCEPT - #$IPTABLES -A OUTPUT -p udp --sport 1:65535 --dport $i -j ACCEPT + $IPTABLES -A OUTPUT -p udp --sport 1:65535 --dport $i -j ACCEPT $IPTABLES -A INPUT -p udp --dport $i --sport 1:65535 -j ACCEPT $IPTABLES -A INPUT -p udp --sport $i --dport 1:65535 -j ACCEPT done