diff options
author | jaseg <code@jaseg.net> | 2019-04-15 10:31:58 +0900 |
---|---|---|
committer | jaseg <git@jaseg.net> | 2019-04-15 10:31:58 +0900 |
commit | 1bdfa0925e857cee67d896c13a505fe18c1044e2 (patch) | |
tree | b3844bcd37a5624f26aa97a7591445778c53f6a2 | |
parent | 143419bb5aafd7a671b3c532d7fad9c050e45741 (diff) | |
download | gerbolyze-1bdfa0925e857cee67d896c13a505fe18c1044e2.tar.gz gerbolyze-1bdfa0925e857cee67d896c13a505fe18c1044e2.tar.bz2 gerbolyze-1bdfa0925e857cee67d896c13a505fe18c1044e2.zip |
deploy: Fix up iptables to allow http(s)
-rw-r--r-- | gerboweb/deploy/iptables.rules | 2 |
1 files changed, 2 insertions, 0 deletions
diff --git a/gerboweb/deploy/iptables.rules b/gerboweb/deploy/iptables.rules index 0f6f366..db68eb5 100644 --- a/gerboweb/deploy/iptables.rules +++ b/gerboweb/deploy/iptables.rules @@ -18,6 +18,8 @@ COMMIT -A INPUT -p tcp -m state --state NEW -m tcp --dport 22 -j ACCEPT -A INPUT -p tcp -m state --state NEW -m tcp --dport 2342 -j ACCEPT -A INPUT -p tcp -m state --state NEW -m tcp --dport 23 -j ACCEPT +-A INPUT -p tcp -m state --state NEW -m tcp --dport 80 -j ACCEPT +-A INPUT -p tcp -m state --state NEW -m tcp --dport 443 -j ACCEPT -A INPUT -j REJECT --reject-with icmp-host-prohibited -A FORWARD -j REJECT --reject-with icmp-host-prohibited COMMIT |