Skip to content

Commit

Permalink
allow ports by default
Browse files Browse the repository at this point in the history
  • Loading branch information
hiddify-com committed Feb 7, 2023
1 parent 2ef7646 commit ead0cc8
Showing 1 changed file with 8 additions and 6 deletions.
14 changes: 8 additions & 6 deletions common/run.sh
Original file line number Diff line number Diff line change
Expand Up @@ -2,13 +2,15 @@
function add2iptables(){
iptables -C $1 || echo "adding rule $1" && iptables -I $1
}

add2iptables "INPUT -m state --state ESTABLISHED,RELATED -j ACCEPT"
add2iptables "INPUT -i lo -j ACCEPT"
add2iptables "INPUT -p tcp --dport 443 -j ACCEPT"
add2iptables "INPUT -p udp --dport 53 -j ACCEPT"
add2iptables "INPUT -p tcp --dport 80 -j ACCEPT"
add2iptables "INPUT -p tcp --dport 22 -j ACCEPT"

if [[ $ENABLE_FIREWALL == true ]]; then
add2iptables "INPUT -m state --state ESTABLISHED,RELATED -j ACCEPT"
add2iptables "INPUT -i lo -j ACCEPT"
add2iptables "INPUT -p tcp --dport 443 -j ACCEPT"
add2iptables "INPUT -p udp --dport 53 -j ACCEPT"
add2iptables "INPUT -p tcp --dport 80 -j ACCEPT"
add2iptables "INPUT -p tcp --dport 22 -j ACCEPT"
iptables -P INPUT DROP
iptables-save > /etc/iptables/rules.v4
else
Expand Down

0 comments on commit ead0cc8

Please sign in to comment.