summaryrefslogtreecommitdiff
path: root/openwrt/target
diff options
context:
space:
mode:
authornbd <nbd@3c298f89-4303-0410-b956-a3cf2f4a3e73>2005-03-22 13:05:35 +0000
committernbd <nbd@3c298f89-4303-0410-b956-a3cf2f4a3e73>2005-03-22 13:05:35 +0000
commitb230b45018961d845f265e9926280d0e24974002 (patch)
treeac2445c32d5597a8adbcb0e8e01c7269423c2311 /openwrt/target
parentb77d4b76e25a79de58e31318e6d3a7bd5f21b4a7 (diff)
allow GRE protocol in default firewall settings
git-svn-id: svn://svn.openwrt.org/openwrt/trunk@416 3c298f89-4303-0410-b956-a3cf2f4a3e73
Diffstat (limited to 'openwrt/target')
-rwxr-xr-xopenwrt/target/default/target_skeleton/etc/init.d/S45firewall3
1 files changed, 2 insertions, 1 deletions
diff --git a/openwrt/target/default/target_skeleton/etc/init.d/S45firewall b/openwrt/target/default/target_skeleton/etc/init.d/S45firewall
index 49b9df0004..9bcb11a3f2 100755
--- a/openwrt/target/default/target_skeleton/etc/init.d/S45firewall
+++ b/openwrt/target/default/target_skeleton/etc/init.d/S45firewall
@@ -12,7 +12,8 @@ done
$IPT -t filter -A INPUT -m state --state INVALID -j DROP
$IPT -t filter -A INPUT -m state --state RELATED,ESTABLISHED -j ACCEPT
-$IPT -t filter -A INPUT -p icmp -j ACCEPT
+$IPT -t filter -A INPUT -p icmp -j ACCEPT
+$IPT -t filter -A INPUT -p 47 -j ACCEPT # allow GRE
$IPT -t filter -A INPUT -i $WAN -p tcp -j REJECT --reject-with tcp-reset
$IPT -t filter -A INPUT -i $WAN -j REJECT --reject-with icmp-port-unreachable
$IPT -t filter -A FORWARD -m state --state INVALID -j DROP