slitaz-tools diff etc/slitaz/firewall.sh @ rev 898
Added tag 5.8.9 for changeset cffac58f072b
author | Aleksej Bobylev <al.bobylev@gmail.com> |
---|---|
date | Sat Jul 05 18:24:31 2014 +0300 (2014-07-05) |
parents | 72c2ef5c57e7 |
children |
line diff
1.1 --- a/etc/slitaz/firewall.sh Thu Jul 18 19:35:25 2013 +0100 1.2 +++ b/etc/slitaz/firewall.sh Sat Jul 05 18:24:31 2014 +0300 1.3 @@ -19,10 +19,10 @@ 1.4 # Accept input on the local network 1.5 iptables -A INPUT -s $LOCAL_NETWORK -j ACCEPT 1.6 1.7 -# Accept (nearly) all output trafic 1.8 +# Accept (nearly) all output traffic 1.9 iptables -A OUTPUT -m conntrack --ctstate NEW,ESTABLISHED,RELATED -j ACCEPT 1.10 1.11 -# Accept input trafic only for connections initialized by user 1.12 +# Accept input traffic only for connections initialized by user 1.13 iptables -A INPUT -m conntrack --ctstate RELATED,ESTABLISHED -j ACCEPT 1.14 1.15 # If you manage a HTTP/SSH/FTP/IRC server you can accept input for