X-Git-Url: https://iankelling.org/git/?p=automated-distro-installer;a=blobdiff_plain;f=wrt-setup-local;h=73eaeba8bdd2cc3462dfd5756d446c17e6578fda;hp=a5fd9118db2ee5b7c60087350c564ab7d51e4a4f;hb=HEAD;hpb=839b3cf02ad7e8900b3d685d54449f11e7b60b60 diff --git a/wrt-setup-local b/wrt-setup-local index a5fd911..3d2edb8 100755 --- a/wrt-setup-local +++ b/wrt-setup-local @@ -666,6 +666,7 @@ config rule option target REJECT ## end no external dns for ziva +$(. /root/cmc-firewall-data) config rule option src wan @@ -684,32 +685,6 @@ config rule option target ACCEPT option dest_port 9091 - -config redirect - option name nagioskd - option src wan - option src_dport 3005 - option dest_port 3005 - option dest_ip $l.2 - option dest lan -config rule - option src wan - option target ACCEPT - option dest_port 3005 - - -config redirect - option name sshkd - option src wan - option src_dport 2202 - option dest_port 22 - option dest_ip $l.2 - option dest lan -config rule - option src wan - option target ACCEPT - option dest_port 2202 - # was working on an openvpn server, didn't finish # config redirect # option name vpnkd @@ -737,67 +712,6 @@ config rule option dest_port 8989 -config redirect - option name sshx2 - option src wan - option src_dport 2205 - option dest_port 22 - option dest_ip $l.5 - option dest lan -config rule - option src wan - option target ACCEPT - option dest_port 2205 - -config redirect - option name sshx3 - option src wan - option src_dport 2207 - option dest_port 22 - option dest_ip $l.7 - option dest lan -config rule - option src wan - option target ACCEPT - option dest_port 2207 - -config redirect - option name sshtp - option src wan - option src_dport 2208 - option dest_port 22 - option dest_ip $l.8 - option dest lan -config rule - option src wan - option target ACCEPT - option dest_port 2208 - -config redirect - option name sshbb8 - option src wan - option src_dport 2209 - option dest_port 22 - option dest_ip $l.9 - option dest lan -config rule - option src wan - option target ACCEPT - option dest_port 2209 - - -config redirect - option name sshfrodo - option src wan - option src_dport 2234 - option dest_port 34 - option dest_ip $l.34 - option dest lan -config rule - option src wan - option target ACCEPT - option dest_port 2228 - config redirect option name icecast @@ -848,7 +762,7 @@ config rule option target ACCEPT option dest_port 4533 -# So a client can just have i.b8.nz dns even when they +# So a client can just have b8.nz dns even when they # are on the lan. #config redirect # option name navidromelan @@ -1113,32 +1027,13 @@ EOF # https dns will need to be blocked by ip in # order to be comprehensive + cedit /etc/unbound/unbound_ext.conf <