firewall: do not process rules in reverse
SVN-Revision: 18015
This commit is contained in:
@@ -280,7 +280,7 @@ fw_rule() {
|
|||||||
[ -n "$src" -a -n "$dest" ] && ZONE=zone_${src}_forward
|
[ -n "$src" -a -n "$dest" ] && ZONE=zone_${src}_forward
|
||||||
[ -n "$dest" ] && TARGET=zone_${dest}_$target
|
[ -n "$dest" ] && TARGET=zone_${dest}_$target
|
||||||
add_rule() {
|
add_rule() {
|
||||||
$IPTABLES -I $ZONE 1 \
|
$IPTABLES -A $ZONE \
|
||||||
${proto:+-p $proto} \
|
${proto:+-p $proto} \
|
||||||
${icmp_type:+--icmp-type $icmp_type} \
|
${icmp_type:+--icmp-type $icmp_type} \
|
||||||
${src_ip:+-s $src_ip} \
|
${src_ip:+-s $src_ip} \
|
||||||
|
|||||||
Reference in New Issue
Block a user