15 lines
698 B
Bash
Executable File
15 lines
698 B
Bash
Executable File
FW_DIR="$(cd "$(dirname "${BASH_SOURCE[0]}")/.." && pwd)"
|
|
source "$FW_DIR/lib.sh"
|
|
|
|
|
|
ensure_chain ai-sandbox-input
|
|
ensure_chain ai-sandbox-forward
|
|
|
|
add_rule ai-sandbox-input -s 10.77.0.150 -m conntrack --ctstate RELATED,ESTABLISHED -j ACCEPT
|
|
add_rule ai-sandbox-input -s 10.77.0.150 -j REJECT --reject-with icmp-port-unreachable
|
|
|
|
add_rule ai-sandbox-forward -s 10.77.0.150 -d 10.0.0.0/8 -j REJECT --reject-with icmp-port-unreachable
|
|
add_rule ai-sandbox-forward -s 10.77.0.150 -d 172.16.0.0/12 -j REJECT --reject-with icmp-port-unreachable
|
|
add_rule ai-sandbox-forward -s 10.77.0.150 -d 192.168.0.0/16 -j REJECT --reject-with icmp-port-unreachable
|
|
add_rule ai-sandbox-forward -s 10.77.0.150 -j ACCEPT
|