diff options
author | Mike Baker <mbm@openwrt.org> | 2005-05-25 02:51:57 +0000 |
---|---|---|
committer | Mike Baker <mbm@openwrt.org> | 2005-05-25 02:51:57 +0000 |
commit | 440b207d83a48b8de36ef0142dcb3b23cd6ac5e0 (patch) | |
tree | 574608aba0719e0e9e38eb3d69f6167a32b7686c /target/default/target_skeleton | |
parent | d4c30767b6e1fd12578d644281bb66fd252bf239 (diff) | |
download | master-187ad058-440b207d83a48b8de36ef0142dcb3b23cd6ac5e0.tar.gz master-187ad058-440b207d83a48b8de36ef0142dcb3b23cd6ac5e0.tar.bz2 master-187ad058-440b207d83a48b8de36ef0142dcb3b23cd6ac5e0.zip |
*** empty log message ***
git-svn-id: svn://svn.openwrt.org/openwrt/trunk/openwrt@1055 3c298f89-4303-0410-b956-a3cf2f4a3e73
Diffstat (limited to 'target/default/target_skeleton')
-rwxr-xr-x | target/default/target_skeleton/etc/init.d/S45firewall | 8 |
1 files changed, 8 insertions, 0 deletions
diff --git a/target/default/target_skeleton/etc/init.d/S45firewall b/target/default/target_skeleton/etc/init.d/S45firewall index a506637255..bdb485936a 100755 --- a/target/default/target_skeleton/etc/init.d/S45firewall +++ b/target/default/target_skeleton/etc/init.d/S45firewall @@ -16,10 +16,18 @@ iptables -N forwarding_rule iptables -t nat -N prerouting_rule iptables -t nat -N postrouting_rule +### Allow SSH from WAN +# iptables -t nat -A prerouting_rule -i $WAN -p tcp --dport 22 -j ACCEPT +# iptables -A input_rule -i $WAN -p tcp --dport 22 -j ACCEPT + ### Port forwarding # iptables -t nat -A prerouting_rule -i $WAN -p tcp --dport 22 -j DNAT --to 192.168.1.2 # iptables -A forwarding_rule -i $WAN -p tcp --dport 22 -d 192.168.1.2 -j ACCEPT +### DMZ (should be placed after port forwarding / accept rules) +# iptables -t nat -A prerouting_rule -i $WAN -j DNAT --to 192.168.1.2 +# iptables -A forwarding_rule -i $WAN -d 192.168.1.2 -j ACCEPT + ### INPUT ### (connections with the router as destination) |