update firewall rules for http server
authorIan Kelling <ian@iankelling.org>
Mon, 8 Aug 2016 03:35:02 +0000 (20:35 -0700)
committerIan Kelling <ian@iankelling.org>
Mon, 6 Feb 2017 06:21:41 +0000 (22:21 -0800)
wrt-disabled-firewall-rules
wrt-setup

index 18630cd2f737708b88d08b9538bb9403651bd745..a0041d70470bba769534d23bc1a82c73772dde3e 100644 (file)
@@ -3,20 +3,6 @@ firewall rules, temporarily disabled until I get them working
 
 #### begin port forwarding rules ####
       # each port forward needs corresponding forward in the vpn server
-config redirect
-    option name ssh
-    option src              wan
-    # example of  using a non-standard port
-    # and comment out the 22 port line
-    #   option src_dport        63321
-    #   option dest_port        22  # already default
-    option src_dport        22
-    option dest_ip          192.168.1.2
-    option dest             lan
-config rule
-    option src              wan
-    option target           ACCEPT
-    option dest_port        22
 
 
 config redirect
@@ -71,32 +57,4 @@ config rule
 
 
 
-# http server
-      # for https
-      # config redirect
-      #        option src              wan
-      #        option src_dport        443
-      #        option dest             lan
-      #        option dest_ip          192.168.1.2
-      #        option proto            tcp
-
-      # config rule
-      #        option src              wan
-      #        option target           ACCEPT
-      #        option dest_port        443
-      #        option proto            tcp
-
-      # config redirect
-      #        option src                      wan
-      #        option src_dport        80
-      #        option dest                     lan
-      #        option dest_ip          192.168.1.2
-      #        option proto            tcp
-
-      # config rule
-      #        option src              wan
-      #        option target           ACCEPT
-      #        option dest_port        80
-      #        option proto            tcp
-
 #### end port forwarding rules ####
index 4d208c0eea476ea6a77d2d4607b5cd9acddb197a..044bf826e5510f25541e908a77013dd4d291eeaf 100755 (executable)
--- a/wrt-setup
+++ b/wrt-setup
@@ -169,6 +169,33 @@ config rule
     option src              wan
     option target           ACCEPT
     option dest_port        22
+
+
+#http/https
+config redirect
+       option src              wan
+       option src_dport        443
+       option dest             lan
+       option dest_ip          192.168.1.2
+       option proto            tcp
+config rule
+       option src              wan
+       option target           ACCEPT
+       option dest_port        443
+       option proto            tcp
+
+config redirect
+       option src              wan
+       option src_dport        80
+       option dest             lan
+       option dest_ip          192.168.1.2
+       option proto            tcp
+config rule
+       option src              wan
+       option target           ACCEPT
+       option dest_port        80
+       option proto            tcp
+
 EOF