Commit Graph

19 Commits

Author SHA1 Message Date
gardouille f115b3cc9c Firewall: Add a rule for HP printers on port 9100 2015-10-10 01:42:21 +02:00
gardouille 7767c3f8a2 firewall: allow OUTPUT SMTPS 2015-09-17 11:41:29 +02:00
gardouille 03511ce7d6 firewall: add possibility to load an additionnal rules file:
firewall.local if exists.
2015-09-16 23:05:06 +02:00
gardouille d7a819df4b firewall: i've forgot to allow ESTABLISHED,… OUTPUT connections
firewall: increase LOG limit-burst to 10
2015-09-16 23:02:23 +02:00
gardouille c699ff9c4d firewall: set OUTPUT Policy to DROP and translate some comments. 2015-09-16 22:04:12 +02:00
gardouille 5c5e0898d2 firewall: allow SNMP requests if cupsd service is available. 2015-09-16 18:46:28 +02:00
gardouille bfadca762d firewall: allow INPUT NFSD if nfsd service is available.
firewall: allow OUTPUT if nfs client is available.
firewall: exclude tun* interface for default rules.
2015-09-16 18:43:29 +02:00
gardouille 5a8b0b54fc firewall: allow OUTPUT: DNS and MAIL.
allow OUTPUT: ssh if an ssh client is available.
2015-09-16 18:33:37 +02:00
gardouille a80107a596 firewall: allow OUTPUT: 8140 if a puppetmaster service file exists. 2015-09-16 18:28:29 +02:00
gardouille d3bf7d12e2 firewall: allow 8140 if puppet is available. 2015-09-16 18:22:28 +02:00
gardouille 3a21bf0eae firewall: allow udp/123 if ntpd is available. 2015-09-16 18:20:53 +02:00
gardouille a9e353fe37 firewall: allow 80 and 443 INPUT/OUTPUT if apache2|nginx is available.
Issue #1
2015-09-16 18:12:42 +02:00
gardouille 147538cfa5 firewall: Add INPUT rules if sshd is available 2015-09-16 17:59:42 +02:00
gardouille e1b4d59b4f firewall: Insert VPN rules at the beginning. 2015-09-16 17:56:59 +02:00
gardouille 15c3382f2f firewall: allow OUTPUT http(s) and OpenPGP 2015-09-16 17:55:44 +02:00
gardouille 9d6fb75b7f Firewall: add rules if a dhcpd is available. 2015-09-11 19:40:19 +02:00
gardouille f425671216 Add Iptables rules if dhclient is available. 2015-09-11 19:38:03 +02:00
gardouille acde46cc56 Add Iptables rules only if a slapd or an ldap directory is available. 2015-09-11 19:33:08 +02:00
gardouille 8432e37c93 Iptables script. 2015-09-11 19:08:30 +02:00