Diff for scripts/shell/firewall/fw-universal.sh between version 2.39 and 2.40
version 2.39, 2006/02/28 17:50:00 |
version 2.40, 2006/03/04 02:09:52 |
|
|
#$IPTABLES -A FORWARD -m state --state NEW -o $NAT_LAN_IFACE -j ACCEPT |
#$IPTABLES -A FORWARD -m state --state NEW -o $NAT_LAN_IFACE -j ACCEPT |
$IPTABLES -A FORWARD -m state --state ESTABLISHED,RELATED -j ACCEPT |
$IPTABLES -A FORWARD -m state --state ESTABLISHED,RELATED -j ACCEPT |
|
|
|
# hide NAT clients behind firewall: - set TTL |
|
# XXX: warning: this breaks traceroute !!! |
|
if [ "e$NAT_SET_TTL" = "eyes" ]; then |
|
echo "NAT: clients hidden behind firewall - setting TTL" |
|
$IPTABLES -t mangle -A POSTROUTING -o $NAT_LAN_IFACE -j TTL --ttl-set 64 |
|
fi |
|
|
|
|
fi |
fi |
} # }}} |
} # }}} |
|
|
Platon Group <platon@platon.org> http://platon.org/
|
|