Commit Graph

16 Commits

Author SHA1 Message Date
d7a819df4b firewall: i've forgot to allow ESTABLISHED,… OUTPUT connections
firewall: increase LOG limit-burst to 10
2015-09-16 23:02:23 +02:00
c699ff9c4d firewall: set OUTPUT Policy to DROP and translate some comments. 2015-09-16 22:04:12 +02:00
5c5e0898d2 firewall: allow SNMP requests if cupsd service is available. 2015-09-16 18:46:28 +02:00
bfadca762d firewall: allow INPUT NFSD if nfsd service is available.
firewall: allow OUTPUT if nfs client is available.
firewall: exclude tun* interface for default rules.
2015-09-16 18:43:29 +02:00
5a8b0b54fc firewall: allow OUTPUT: DNS and MAIL.
allow OUTPUT: ssh if an ssh client is available.
2015-09-16 18:33:37 +02:00
a80107a596 firewall: allow OUTPUT: 8140 if a puppetmaster service file exists. 2015-09-16 18:28:29 +02:00
d3bf7d12e2 firewall: allow 8140 if puppet is available. 2015-09-16 18:22:28 +02:00
3a21bf0eae firewall: allow udp/123 if ntpd is available. 2015-09-16 18:20:53 +02:00
a9e353fe37 firewall: allow 80 and 443 INPUT/OUTPUT if apache2|nginx is available.
Issue #1
2015-09-16 18:12:42 +02:00
147538cfa5 firewall: Add INPUT rules if sshd is available 2015-09-16 17:59:42 +02:00
e1b4d59b4f firewall: Insert VPN rules at the beginning. 2015-09-16 17:56:59 +02:00
15c3382f2f firewall: allow OUTPUT http(s) and OpenPGP 2015-09-16 17:55:44 +02:00
9d6fb75b7f Firewall: add rules if a dhcpd is available. 2015-09-11 19:40:19 +02:00
f425671216 Add Iptables rules if dhclient is available. 2015-09-11 19:38:03 +02:00
acde46cc56 Add Iptables rules only if a slapd or an ldap directory is available. 2015-09-11 19:33:08 +02:00
8432e37c93 Iptables script. 2015-09-11 19:08:30 +02:00