aboutsummaryrefslogtreecommitdiffstats
path: root/package/iptables/files/firewall.init
diff options
context:
space:
mode:
authorFelix Fietkau <nbd@openwrt.org>2007-03-27 16:45:10 +0000
committerFelix Fietkau <nbd@openwrt.org>2007-03-27 16:45:10 +0000
commitc05a061e4ea5e6c031ee9b48d06899cacd595dbe (patch)
treec67cb76f6acf59f42d9ed0370af868b6e9793648 /package/iptables/files/firewall.init
parent6f48cd2114b7b185245369c4842c865a52c654d1 (diff)
downloadupstream-c05a061e4ea5e6c031ee9b48d06899cacd595dbe.tar.gz
upstream-c05a061e4ea5e6c031ee9b48d06899cacd595dbe.tar.bz2
upstream-c05a061e4ea5e6c031ee9b48d06899cacd595dbe.zip
fix a problem with the firewall script (multicast traffic could produce packet loss)
SVN-Revision: 6726
Diffstat (limited to 'package/iptables/files/firewall.init')
-rwxr-xr-xpackage/iptables/files/firewall.init2
1 files changed, 1 insertions, 1 deletions
diff --git a/package/iptables/files/firewall.init b/package/iptables/files/firewall.init
index 290bae1eac..310b0ec09c 100755
--- a/package/iptables/files/firewall.init
+++ b/package/iptables/files/firewall.init
@@ -100,7 +100,7 @@ start() {
# uses the default -P DROP
### MASQ
- iptables -t nat -A PREROUTING -m state --state NEW -j NEW
+ iptables -t nat -A PREROUTING -m state --state NEW -p tcp -j NEW
iptables -t nat -A PREROUTING -j prerouting_rule
[ -z "$WAN" ] || iptables -t nat -A PREROUTING -i "$WAN" -j prerouting_wan
iptables -t nat -A POSTROUTING -j postrouting_rule