summaryrefslogtreecommitdiffstats
path: root/etc/shorewall6/rules
diff options
context:
space:
mode:
Diffstat (limited to 'etc/shorewall6/rules')
-rw-r--r--etc/shorewall6/rules28
1 files changed, 28 insertions, 0 deletions
diff --git a/etc/shorewall6/rules b/etc/shorewall6/rules
new file mode 100644
index 00000000..e051f8e0
--- /dev/null
+++ b/etc/shorewall6/rules
@@ -0,0 +1,28 @@
+#
+# Shorewall6 version 4 - Sample Rules File for one-interface configuration.
+# Copyright (C) 2006,2008 by the Shorewall Team
+#
+# This library is free software; you can redistribute it and/or
+# modify it under the terms of the GNU Lesser General Public
+# License as published by the Free Software Foundation; either
+# version 2.1 of the License, or (at your option) any later version.
+#
+# See the file README.txt for further details.
+#------------------------------------------------------------------------------------------------------------
+# For information on entries in this file, type "man shorewall6-rules"
+###########################################################################################################################################################################
+#ACTION SOURCE DEST PROTO DEST SOURCE ORIGINAL RATE USER/ MARK CONNLIMIT TIME HEADERS SWITCH
+# PORT PORT(S) DEST LIMIT GROUP
+#SECTION ALL
+#SECTION ESTABLISHED
+#SECTION RELATED
+SECTION NEW
+
+# Drop Ping from the "bad" net zone.. and prevent your log from being flooded..
+
+Ping(DROP) net $FW
+
+# Permit all ICMP traffic FROM the firewall TO the net zone
+
+ACCEPT $FW net ipv6-icmp
+