Browse Source

Merge branch 'feyo-master-patch-93045' into 'ipv6'

Fix IPTables config over IPv6 SSH connections

See merge request cyber5k/mistborn!85
merge-requests/86/merge
Steven Foerster 5 years ago
parent
commit
06fc099187
  1. 4
      scripts/subinstallers/iptables.sh

4
scripts/subinstallers/iptables.sh

@ -47,8 +47,12 @@ sudo iptables -A INPUT -m state --state RELATED,ESTABLISHED -j ACCEPT
if [ ! -z "${SSH_CLIENT}" ]; then if [ ! -z "${SSH_CLIENT}" ]; then
SSH_SRC=$(echo $SSH_CLIENT | awk '{print $1}') SSH_SRC=$(echo $SSH_CLIENT | awk '{print $1}')
SSH_PRT=$(echo $SSH_CLIENT | awk '{print $3}') SSH_PRT=$(echo $SSH_CLIENT | awk '{print $3}')
if [[ $SSH_SRC =~ .*:.* ]]; then
sudo ip6tables -A INPUT -p tcp -s $SSH_SRC --dport $SSH_PRT -j ACCEPT
else
sudo iptables -A INPUT -p tcp -s $SSH_SRC --dport $SSH_PRT -j ACCEPT sudo iptables -A INPUT -p tcp -s $SSH_SRC --dport $SSH_PRT -j ACCEPT
fi fi
fi
# docker rules # docker rules
sudo iptables -N MISTBORN_DOCKER_INPUT sudo iptables -N MISTBORN_DOCKER_INPUT

Loading…
Cancel
Save