From a730dd65163162ac4017fc9cb3b015dadc89421a Mon Sep 17 00:00:00 2001 From: Bob Mottram Date: Sat, 19 Apr 2014 22:16:49 +0100 Subject: [PATCH] Firewall update --- beaglebone.txt | 2 ++ 1 file changed, 2 insertions(+) diff --git a/beaglebone.txt b/beaglebone.txt index f90fd4bf..3534d572 100644 --- a/beaglebone.txt +++ b/beaglebone.txt @@ -1050,6 +1050,7 @@ iptables -A INPUT -p tcp --destination-port 4000 -j DROP iptables -A INPUT -p tcp --destination-port 119 -j DROP iptables -A INPUT -p tcp --destination-port 137 -j DROP iptables -A INPUT -p tcp --destination-port 3306 -j DROP +iptables -A INPUT -p tcp --destination-port 4242 -j DROP iptables -A INPUT -p udp --destination-port 1 -j DROP iptables -A INPUT -p udp --destination-port 7 -j DROP iptables -A INPUT -p udp --destination-port 109:111 -j DROP @@ -1073,6 +1074,7 @@ iptables -A INPUT -p udp --destination-port 137 -j DROP iptables -A INPUT -p udp --destination-port 8432 -j DROP iptables -A INPUT -p udp --destination-port 8433 -j DROP iptables -A INPUT -p udp --destination-port 3306 -j DROP +iptables -A INPUT -p udp --destination-port 4242 -j DROP # Make sure NEW incoming tcp connections are SYN packets iptables -A INPUT -p tcp ! --syn -m state --state NEW -j DROP