From: Davor Ocelic Date: Sun, 21 Aug 2005 19:09:21 +0000 (+0000) Subject: Updated X-Git-Url: https://git.hcoop.net/hcoop/zz_old/fwtool.git/commitdiff_plain/f5a6c05e5e465bc230dceafbdd145659fc629d81 Updated --- diff --git a/closed.conf b/closed.conf index 51d8ce4..9ce2d56 100644 --- a/closed.conf +++ b/closed.conf @@ -78,15 +78,9 @@ chain OUTPUT { state (ESTABLISHED,RELATED) ACCEPT; of lo saddr 127.0.0.1/8 daddr 127.0.0.1/8 ACCEPT; - of lo saddr %IPSPEC daddr %IPSPEC ACCEPT; + of lo saddr %IPSPEC ACCEPT; of lo goto LDENY; - saddr !%IPSPEC goto LDENY; - - # again uncomment for trojan horses protection and inside out - # violations.... - proto (tcp,udp) sport 14000: goto LDENY; - # queueing goes here, maybe some special fw rules as well proto tcp goto tosqueue; # ACCEPT must be handled here @@ -118,6 +112,23 @@ chain badguys { 62.75.240.62 210.204.193.1 84.26.59.170 + # docelic, Sun Aug 21 01:29:10 EDT 2005 + 63.76.235.2 + 80.48.31.252 + 220.194.55.126 + 163.26.229.131 + 201.6.223.150 + 64.34.171.56 + 82.177.98.1 + 61.185.219.23 + 62.62.224.184 + 212.0.107.141 + 60.248.227.34 + 63.246.10.45 + # docelic, Sun Aug 21 22:14:15 EDT 2005 + 210.184.124.11 + 210.238.188.155 + 63.247.76.10 # Log says reverse mapping failed for this address # (hundreds of entries)