|
|
|
|
@ -94,6 +94,7 @@ sudo ip6tables -P FORWARD DROP
@@ -94,6 +94,7 @@ sudo ip6tables -P FORWARD DROP
|
|
|
|
|
sudo ip6tables -P OUTPUT ACCEPT |
|
|
|
|
|
|
|
|
|
# iptables-persistent |
|
|
|
|
if [ "$DISTRO" == "ubuntu" ] || [ "$DISTRO" == "debian" ] || [ "$DISTRO" == "raspbian" ] ; then |
|
|
|
|
if [ ! "$(dpkg-query -l iptables-persistent)" ]; then |
|
|
|
|
echo "Installing iptables-persistent" |
|
|
|
|
|
|
|
|
|
@ -109,6 +110,12 @@ else
@@ -109,6 +110,12 @@ else
|
|
|
|
|
echo "Saving ip6tables rules" |
|
|
|
|
sudo bash -c "ip6tables-save > /etc/iptables/rules.v6" |
|
|
|
|
fi |
|
|
|
|
else |
|
|
|
|
echo "Saving iptables rules" |
|
|
|
|
sudo bash -c "iptables-save > /etc/iptables/rules.v4" |
|
|
|
|
echo "Saving ip6tables rules" |
|
|
|
|
sudo bash -c "ip6tables-save > /etc/iptables/rules.v6" |
|
|
|
|
fi |
|
|
|
|
|
|
|
|
|
# IP forwarding |
|
|
|
|
sudo sed -i 's/.*net.ipv4.ip_forward.*/net.ipv4.ip_forward=1/' /etc/sysctl.conf |
|
|
|
|
|