Added iptables init and updated busybox get script
This commit is contained in:
parent
d6ab011a0f
commit
16b10bd119
11
Makefile
11
Makefile
@ -76,3 +76,14 @@ upgrade-gns3-server:
|
|||||||
|
|
||||||
get-busy-box-static:
|
get-busy-box-static:
|
||||||
bash get-busy-box-static.sh
|
bash get-busy-box-static.sh
|
||||||
|
|
||||||
|
disable-firewalld:
|
||||||
|
systemctl disable firewalld
|
||||||
|
systemctl stop firewalld
|
||||||
|
|
||||||
|
init-iptables:
|
||||||
|
dnf install -y iptables-services iptables-utils
|
||||||
|
cp -vf rules.v4 /etc/sysconfig/iptables
|
||||||
|
cp -vf rules.v6 /etc/sysconfig/ip6tables
|
||||||
|
systemctl start iptables
|
||||||
|
systemctl enable iptables
|
||||||
|
@ -3,7 +3,7 @@
|
|||||||
set -x
|
set -x
|
||||||
set -e
|
set -e
|
||||||
|
|
||||||
docker run -d --name busybox_extractor -v ${pwd}:/installer debian:12 sleep 3600
|
docker run -d --name busybox_extractor -v $(pwd):/installer debian:12 sleep 3600
|
||||||
|
|
||||||
docker exec -it busybox_extractor apt update
|
docker exec -it busybox_extractor apt update
|
||||||
|
|
||||||
|
40
rules.v4
40
rules.v4
@ -0,0 +1,40 @@
|
|||||||
|
# Generated by iptables-save v1.8.5 on Thu Sep 19 06:28:39 2024
|
||||||
|
*filter
|
||||||
|
:INPUT ACCEPT [1292:268675]
|
||||||
|
:FORWARD ACCEPT [0:0]
|
||||||
|
:OUTPUT ACCEPT [1233:136774]
|
||||||
|
-A INPUT -i lo -j ACCEPT
|
||||||
|
-A INPUT -m state --state RELATED,ESTABLISHED -j ACCEPT
|
||||||
|
-A FORWARD -m state --state RELATED,ESTABLISHED -j ACCEPT
|
||||||
|
COMMIT
|
||||||
|
# Completed on Thu Sep 19 06:28:39 2024
|
||||||
|
# Generated by iptables-save v1.8.5 on Thu Sep 19 06:28:39 2024
|
||||||
|
*security
|
||||||
|
:INPUT ACCEPT [1739:304377]
|
||||||
|
:FORWARD ACCEPT [0:0]
|
||||||
|
:OUTPUT ACCEPT [1233:136774]
|
||||||
|
COMMIT
|
||||||
|
# Completed on Thu Sep 19 06:28:39 2024
|
||||||
|
# Generated by iptables-save v1.8.5 on Thu Sep 19 06:28:39 2024
|
||||||
|
*raw
|
||||||
|
:PREROUTING ACCEPT [1953:339671]
|
||||||
|
:OUTPUT ACCEPT [1233:136774]
|
||||||
|
COMMIT
|
||||||
|
# Completed on Thu Sep 19 06:28:39 2024
|
||||||
|
# Generated by iptables-save v1.8.5 on Thu Sep 19 06:28:39 2024
|
||||||
|
*mangle
|
||||||
|
:PREROUTING ACCEPT [1953:339671]
|
||||||
|
:INPUT ACCEPT [1740:304575]
|
||||||
|
:FORWARD ACCEPT [0:0]
|
||||||
|
:OUTPUT ACCEPT [1233:136774]
|
||||||
|
:POSTROUTING ACCEPT [1233:136774]
|
||||||
|
COMMIT
|
||||||
|
# Completed on Thu Sep 19 06:28:39 2024
|
||||||
|
# Generated by iptables-save v1.8.5 on Thu Sep 19 06:28:39 2024
|
||||||
|
*nat
|
||||||
|
:PREROUTING ACCEPT [54:8717]
|
||||||
|
:INPUT ACCEPT [2:116]
|
||||||
|
:POSTROUTING ACCEPT [3:196]
|
||||||
|
:OUTPUT ACCEPT [3:196]
|
||||||
|
COMMIT
|
||||||
|
# Completed on Thu Sep 19 06:28:39 2024
|
49
rules.v6
49
rules.v6
@ -1,37 +1,40 @@
|
|||||||
# Generated by ip6tables-save v1.8.5 on Tue Aug 27 02:40:47 2024
|
# Generated by ip6tables-save v1.8.5 on Thu Sep 19 06:28:50 2024
|
||||||
*filter
|
*filter
|
||||||
:INPUT ACCEPT [9:758]
|
:INPUT ACCEPT [21:1792]
|
||||||
:FORWARD ACCEPT [0:0]
|
:FORWARD ACCEPT [0:0]
|
||||||
:OUTPUT ACCEPT [9:608]
|
:OUTPUT ACCEPT [22:1552]
|
||||||
|
-A INPUT -i lo -j ACCEPT
|
||||||
|
-A INPUT -m state --state RELATED,ESTABLISHED -j ACCEPT
|
||||||
|
-A FORWARD -m state --state RELATED,ESTABLISHED -j ACCEPT
|
||||||
COMMIT
|
COMMIT
|
||||||
# Completed on Tue Aug 27 02:40:47 2024
|
# Completed on Thu Sep 19 06:28:50 2024
|
||||||
# Generated by ip6tables-save v1.8.5 on Tue Aug 27 02:40:47 2024
|
# Generated by ip6tables-save v1.8.5 on Thu Sep 19 06:28:50 2024
|
||||||
*security
|
*security
|
||||||
:INPUT ACCEPT [9:758]
|
:INPUT ACCEPT [23:1932]
|
||||||
:FORWARD ACCEPT [0:0]
|
:FORWARD ACCEPT [0:0]
|
||||||
:OUTPUT ACCEPT [9:608]
|
:OUTPUT ACCEPT [22:1552]
|
||||||
COMMIT
|
COMMIT
|
||||||
# Completed on Tue Aug 27 02:40:47 2024
|
# Completed on Thu Sep 19 06:28:50 2024
|
||||||
# Generated by ip6tables-save v1.8.5 on Tue Aug 27 02:40:47 2024
|
# Generated by ip6tables-save v1.8.5 on Thu Sep 19 06:28:50 2024
|
||||||
*raw
|
*raw
|
||||||
:PREROUTING ACCEPT [9:758]
|
:PREROUTING ACCEPT [916:164852]
|
||||||
:OUTPUT ACCEPT [9:608]
|
:OUTPUT ACCEPT [22:1552]
|
||||||
COMMIT
|
COMMIT
|
||||||
# Completed on Tue Aug 27 02:40:47 2024
|
# Completed on Thu Sep 19 06:28:50 2024
|
||||||
# Generated by ip6tables-save v1.8.5 on Tue Aug 27 02:40:47 2024
|
# Generated by ip6tables-save v1.8.5 on Thu Sep 19 06:28:50 2024
|
||||||
*mangle
|
*mangle
|
||||||
:PREROUTING ACCEPT [9:758]
|
:PREROUTING ACCEPT [915:164634]
|
||||||
:INPUT ACCEPT [9:758]
|
:INPUT ACCEPT [23:1932]
|
||||||
:FORWARD ACCEPT [0:0]
|
:FORWARD ACCEPT [0:0]
|
||||||
:OUTPUT ACCEPT [9:608]
|
:OUTPUT ACCEPT [22:1552]
|
||||||
:POSTROUTING ACCEPT [9:608]
|
:POSTROUTING ACCEPT [22:1552]
|
||||||
COMMIT
|
COMMIT
|
||||||
# Completed on Tue Aug 27 02:40:47 2024
|
# Completed on Thu Sep 19 06:28:50 2024
|
||||||
# Generated by ip6tables-save v1.8.5 on Tue Aug 27 02:40:47 2024
|
# Generated by ip6tables-save v1.8.5 on Thu Sep 19 06:28:50 2024
|
||||||
*nat
|
*nat
|
||||||
:PREROUTING ACCEPT [0:0]
|
:PREROUTING ACCEPT [162:30261]
|
||||||
:INPUT ACCEPT [0:0]
|
:INPUT ACCEPT [0:0]
|
||||||
:POSTROUTING ACCEPT [0:0]
|
:POSTROUTING ACCEPT [1:80]
|
||||||
:OUTPUT ACCEPT [0:0]
|
:OUTPUT ACCEPT [1:80]
|
||||||
COMMIT
|
COMMIT
|
||||||
# Completed on Tue Aug 27 02:40:47 2024
|
# Completed on Thu Sep 19 06:28:50 2024
|
||||||
|
Loading…
Reference in New Issue
Block a user