Advertisement
Guest User

Untitled

a guest
Mar 27th, 2011
84
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 0.61 KB | None | 0 0
  1. #!/bin/sh
  2.  
  3. IPTABLES="/sbin/iptables"
  4.  
  5. # Verejna ip
  6. INET_IP="111.111.111.111"
  7. INET_IFACE="eth0"
  8.  
  9. # Implicitni politikou je zahazovat nepovolene pakety
  10. $IPTABLES -P INPUT DROP
  11. $IPTABLES -P OUTPUT ACCEPT
  12. $IPTABLES -P FORWARD DROP
  13.  
  14. # Povolené IP
  15. $IPTABLES –A INPUT –p TCP --dport 20000 –j ACCEPT # port pro vsechny
  16. $IPTABLES -A INPUT -i $INET_IFACE -m mac --mac-source 00:11:22:33:44:55 -j ACCEPT # Kony doma
  17. $IPTABLES -A INPUT -i $INET_IFACE -m mac --mac-source 00:22:44:55:66:77 -j ACCEPT # Kony doma verejka
  18. $IPTABLES -A INPUT -i $INET_IFACE -m mac --mac-source 00:33:44:99:00:00 -j ACCEPT # Router brana
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement