diff --git a/templates/rules-save.j2 b/templates/rules-save.j2 index a320d49..9e3ee9b 100644 --- a/templates/rules-save.j2 +++ b/templates/rules-save.j2 @@ -7,4 +7,5 @@ -A INPUT -m conntrack --ctstate INVALID -j DROP -A INPUT -p icmp -m icmp --icmp-type 8 -m conntrack --ctstate NEW -j ACCEPT -A INPUT -i lo -j ACCEPT +-A INPUT -p tcp --dport 22 -j ACCEPT COMMIT diff --git a/templates/rules6-save.j2 b/templates/rules6-save.j2 index 67cf01f..60fc707 100644 --- a/templates/rules6-save.j2 +++ b/templates/rules6-save.j2 @@ -8,4 +8,7 @@ -A INPUT -p icmpv6 -j ACCEPT -A FORWARD -p icmpv6 -j ACCEPT -A INPUT -i lo -j ACCEPT +{% if ip6 is defined %} +-A INPUT -p tcp --dport 22 -j ACCEPT +{% endif %} COMMIT