X-Git-Url: http://git.ipfire.org/?p=people%2Fteissler%2Fipfire-2.x.git;a=blobdiff_plain;f=config%2Fforwardfw%2Ffirewall-policy;h=f6c88e4afafe171745b5c53e34a17e31d2926b82;hp=0a5cd14b0c9366938f57434daaa780b54627433d;hb=dc21519f683d5bb0f7e5a9dfcfb4806afb895217;hpb=aff15defbc1ade178a1fbbf1fa1b592033d4fb77 diff --git a/config/forwardfw/firewall-policy b/config/forwardfw/firewall-policy index 0a5cd14b0..f6c88e4af 100755 --- a/config/forwardfw/firewall-policy +++ b/config/forwardfw/firewall-policy @@ -1,5 +1,28 @@ #!/bin/sh +############################################################################### +# # +# IPFire.org - A linux based firewall # +# Copyright (C) 2013 # +# # +# This program is free software: you can redistribute it and/or modify # +# it under the terms of the GNU General Public License as published by # +# the Free Software Foundation, either version 3 of the License, or # +# (at your option) any later version. # +# # +# This program is distributed in the hope that it will be useful, # +# but WITHOUT ANY WARRANTY; without even the implied warranty of # +# MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the # +# GNU General Public License for more details. # +# # +# You should have received a copy of the GNU General Public License # +# along with this program. If not, see . # +# # +############################################################################### +# Author: Alexander Marx (amarx@ipfire.org) # +############################################################################### + + eval $(/usr/local/bin/readhash /var/ipfire/forward/settings) eval $(/usr/local/bin/readhash /var/ipfire/optionsfw/settings) eval $(/usr/local/bin/readhash /var/ipfire/ethernet/settings) @@ -30,6 +53,7 @@ else if [ "$BLUE_DEV" ] && [ "$IFACE" ]; then /sbin/iptables -A POLICYFWD -i blue0 ! -o $IFACE -j DROP fi + /sbin/iptables -A POLICYFWD -i orange0 ! -o $IFACE -j DROP /sbin/iptables -A POLICYFWD -j ACCEPT /sbin/iptables -A POLICYFWD -m comment --comment "DROP_FORWARD" -j DROP fi