unneeded rules
This commit is contained in:
parent
b71c8b9f92
commit
55c3c5f052
2 changed files with 0 additions and 4 deletions
|
@ -6,7 +6,5 @@
|
|||
-A INPUT -m conntrack --ctstate RELATED,ESTABLISHED -j ACCEPT
|
||||
-A INPUT -m conntrack --ctstate INVALID -j DROP
|
||||
-A INPUT -p icmp -m icmp --icmp-type 8 -m conntrack --ctstate NEW -j ACCEPT
|
||||
-A INPUT -p udp -m conntrack ! --ctstate NEW -j REJECT --reject-with icmp-port-unreachable
|
||||
-A INPUT -p tcp -m tcp ! --tcp-flags FIN,SYN,RST,ACK SYN -m conntrack ! --ctstate NEW -j REJECT --reject-with tcp-reset
|
||||
-A INPUT -i lo -j ACCEPT
|
||||
COMMIT
|
||||
|
|
|
@ -7,7 +7,5 @@
|
|||
-A INPUT -m conntrack --ctstate INVALID -j DROP
|
||||
-A INPUT -p icmpv6 -j ACCEPT
|
||||
-A FORWARD -p icmpv6 -j ACCEPT
|
||||
-A INPUT -p udp -m conntrack ! --ctstate NEW -j REJECT --reject-with icmp6-port-unreachable
|
||||
-A INPUT -p tcp -m tcp ! --tcp-flags FIN,SYN,RST,ACK SYN -m conntrack ! --ctstate NEW -j REJECT --reject-with tcp-reset
|
||||
-A INPUT -i lo -j ACCEPT
|
||||
COMMIT
|
||||
|
|
Loading…
Reference in a new issue