add firewall protection for wan_device in addition to wan_ifname (fixes #852)
git-svn-id: svn://svn.openwrt.org/openwrt/trunk@5136 3c298f89-4303-0410-b956-a3cf2f4a3e73master
parent
a6b335b84e
commit
24591d8f63
|
@ -8,6 +8,7 @@ start() {
|
|||
scan_interfaces
|
||||
|
||||
config_get WAN wan ifname
|
||||
config_get WANDEV wan device
|
||||
config_get LAN lan ifname
|
||||
|
||||
## CLEAR TABLES
|
||||
|
@ -25,6 +26,7 @@ start() {
|
|||
|
||||
iptables -N LAN_ACCEPT
|
||||
[ -z "$WAN" ] || iptables -A LAN_ACCEPT -i "$WAN" -j RETURN
|
||||
[ -z "$WANDEV" -o "$WANDEV" = "$WAN" ] || iptables -A LAN_ACCEPT -i "$WANDEV" -j RETURN
|
||||
iptables -A LAN_ACCEPT -j ACCEPT
|
||||
|
||||
### INPUT
|
||||
|
|
Loading…
Reference in New Issue