Ajout : iodined tunnel IP sur DNS.
[lhc/ateliers.git] / etc / shorewall / rules
1 # DOC: shorewall-rules(5)
2 ######################################################################################################################################################################################
3 #ACTION SOURCE DEST PROTO DEST SOURCE ORIGINAL RATE USER/ MARK CONNLIMIT TIME HEADERS SWITCH
4 # PORT PORT(S) DEST LIMIT GROUP
5 #SECTION ALL
6 #SECTION ESTABLISHED
7 #SECTION RELATED
8 SECTION NEW
9
10 Ping(ACCEPT) dns $FW
11 Mosh(ACCEPT) dns $FW
12 SSH(ACCEPT) dns $FW
13
14 Ping(ACCEPT) $FW dns
15
16 ACCEPT $FW net icmp
17 DNS(ACCEPT) $FW net
18 Git(ACCEPT) $FW net
19 HTTP(ACCEPT) $FW net
20 HTTPS(ACCEPT) $FW net
21 NTP(ACCEPT) $FW net
22 SMTP(ACCEPT) $FW net
23 SMTPS(ACCEPT) $FW net
24 SSH(ACCEPT) $FW net
25
26 DNS(ACCEPT) net $FW
27 Git(ACCEPT) net $FW
28 HTTP(ACCEPT) net $FW
29 HTTPS(ACCEPT) net $FW
30 Iodine(ACCEPT) net $FW
31 Limit(IMAPS,5,60):info net $FW tcp imaps
32 IMAPS(ACCEPT) net $FW
33 Fanout(ACCEPT) net $FW
34 Managesieve(ACCEPT) net $FW
35 Mosh(ACCEPT) net $FW
36 Ping(ACCEPT) net $FW
37 SMTP(ACCEPT) net $FW
38 SMTPS(ACCEPT) net $FW
39 SSH(ACCEPT) net $FW
40 Limit(SSH,10,60):info net $FW tcp ssh
41 Submission(ACCEPT) net $FW
42 Limit(Submission,10,60):info net $FW tcp submission