Advertisement
Cyberpew

Current Firewall Configuration for DD-WRT

Aug 2nd, 2013
465
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
Bash 1.68 KB | None | 0 0
  1. iptables -I FORWARD -i br1 -o br0 -m state --state NEW -j DROP
  2. iptables -I FORWARD -i br0 -o br1 -m state --state NEW -j DROP
  3. iptables -I INPUT -i br1 -p tcp --dport telnet -j REJECT --reject-with tcp-reset
  4. iptables -I INPUT -i br1 -p tcp --dport ssh -j REJECT --reject-with tcp-reset
  5. iptables -I INPUT -i br1 -p tcp --dport www -j REJECT --reject-with tcp-reset
  6. iptables -I INPUT -i br1 -p tcp --dport https -j REJECT --reject-with tcp-res
  7. #--------------------------------------------
  8. #WRT54 Script Generator v1.02
  9. #(C) 2006-2007 Robert "Robson" Mytkowski
  10. #--------------------------------------------
  11. TCA="tc class add dev br1"
  12. TFA="tc filter add dev br1"
  13. TQA="tc qdisc add dev br1"
  14. SFQ="sfq perturb 10"
  15. tc qdisc del dev br1 root
  16. tc qdisc add dev br1 root handle 1: htb
  17. tc class add dev br1 parent 1: classid 1:1 htb rate 93644kbit
  18. $TCA parent 1:1 classid 1:10 htb rate 5120kbit ceil 5120kbit prio 3
  19. $TQA parent 1:10 handle 10: $SFQ
  20. $TFA parent 1:0 prio 3 protocol ip handle 10 fw flowid 1:10
  21. iptables -t mangle -A POSTROUTING -m iprange --dst-range 192.168.2.100-192.168.2.150 -j MARK --set-mark 10
  22. TCAU="tc class add dev imq0"
  23. TFAU="tc filter add dev imq0"
  24. TQAU="tc qdisc add dev imq0"
  25. modprobe imq
  26. modprobe ipt_IMQ
  27. ip link set imq0 up
  28. tc qdisc del dev imq0 root
  29. tc qdisc add dev imq0 root handle 1: htb
  30. tc class add dev imq0 parent 1: classid 1:1 htb rate 9390kbit
  31. $TCAU parent 1:1 classid 1:10 htb rate 1024kbit ceil 1024kbit prio 3
  32. $TQAU parent 1:10 handle 10: $SFQ
  33. $TFAU parent 1:0 prio 3 protocol ip handle 10 fw flowid 1:10
  34. iptables -t mangle -A PREROUTING -m iprange --src-range 192.168.2.100-192.168.2.150 -j MARK --set-mark 10
  35. iptables -t mangle -A PREROUTING -j IMQ --todev 0
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement