From: Florian Westphal Date: Mon, 5 Nov 2018 17:58:42 +0000 (+0100) Subject: extensions: test protocol and interface negation X-Git-Tag: v1.8.2~17 X-Git-Url: http://git.ipfire.org/?a=commitdiff_plain;h=5a52e6a9cffd8e2a5d16af0fa08902ca8332190b;p=thirdparty%2Fiptables.git extensions: test protocol and interface negation Signed-off-by: Florian Westphal --- diff --git a/extensions/iptables.t b/extensions/iptables.t index 65456ee9..b4b6d677 100644 --- a/extensions/iptables.t +++ b/extensions/iptables.t @@ -2,3 +2,5 @@ -i alongifacename0;=;OK -i thisinterfaceistoolong0;;FAIL -i eth+ -o alongifacename+;=;OK +! -i eth0;=;OK +! -o eth+;=;OK diff --git a/extensions/libxt_standard.t b/extensions/libxt_standard.t index bfdedb7a..4313f7b7 100644 --- a/extensions/libxt_standard.t +++ b/extensions/libxt_standard.t @@ -3,6 +3,9 @@ ! -s 0.0.0.0 -j ACCEPT;! -s 0.0.0.0/32 -j ACCEPT;OK ! -d 0.0.0.0/32 -j ACCEPT;=;OK -s 0.0.0.0/24 -j RETURN;=;OK +-p tcp -j ACCEPT;=;OK +! -p udp -j ACCEPT;=;OK -j DROP;=;OK -j ACCEPT;=;OK -j RETURN;=;OK +! -p 0 -j ACCEPT;=;FAIL