changed persistence method of firewall rules

This commit is contained in:
Tanguy MAZE
2018-12-14 14:58:11 +01:00
parent 338c41e8ca
commit cd36bf1e13
7 changed files with 26 additions and 58 deletions

View File

@@ -11,6 +11,7 @@
-A PREROUTING -f -j DROP
-A PREROUTING -p tcp -m conntrack --ctstate NEW -m tcpmss ! --mss 536:65535 -j DROP
-A PREROUTING -s 127.0.0.0/8 ! -i lo -j DROP
-A PREROUTING -s 192.168.99.0/30 ! -i enp0s8 -j DROP
-A PREROUTING -p tcp --tcp-flags FIN,SYN,RST,PSH,ACK,URG NONE -j DROP
-A PREROUTING -p tcp --tcp-flags FIN,SYN FIN,SYN -j DROP
-A PREROUTING -p tcp --tcp-flags SYN,RST SYN,RST -j DROP