Firewall update

This commit is contained in:
Bob Mottram 2014-04-19 22:16:49 +01:00
parent 8feef6de87
commit a730dd6516
1 changed files with 2 additions and 0 deletions

View File

@ -1050,6 +1050,7 @@ iptables -A INPUT -p tcp --destination-port 4000 -j DROP
iptables -A INPUT -p tcp --destination-port 119 -j DROP
iptables -A INPUT -p tcp --destination-port 137 -j DROP
iptables -A INPUT -p tcp --destination-port 3306 -j DROP
iptables -A INPUT -p tcp --destination-port 4242 -j DROP
iptables -A INPUT -p udp --destination-port 1 -j DROP
iptables -A INPUT -p udp --destination-port 7 -j DROP
iptables -A INPUT -p udp --destination-port 109:111 -j DROP
@ -1073,6 +1074,7 @@ iptables -A INPUT -p udp --destination-port 137 -j DROP
iptables -A INPUT -p udp --destination-port 8432 -j DROP
iptables -A INPUT -p udp --destination-port 8433 -j DROP
iptables -A INPUT -p udp --destination-port 3306 -j DROP
iptables -A INPUT -p udp --destination-port 4242 -j DROP
# Make sure NEW incoming tcp connections are SYN packets
iptables -A INPUT -p tcp ! --syn -m state --state NEW -j DROP