|
@@ -4109,7 +4109,7 @@ function configure_firewall {
|
4109
|
4109
|
iptables -P INPUT DROP
|
4110
|
4110
|
ip6tables -P INPUT DROP
|
4111
|
4111
|
iptables -A INPUT -i lo -j ACCEPT
|
4112
|
|
- iptables -A INPUT -m conntrack --ctstate ESTABLISHED,RELATED -j ACCEPT
|
|
4112
|
+ iptables -A INPUT -m conntrack --ctstate ESTABLISHED -j ACCEPT
|
4113
|
4113
|
|
4114
|
4114
|
# Make sure incoming tcp connections are SYN packets
|
4115
|
4115
|
iptables -A INPUT -p tcp ! --syn -m state --state NEW -j DROP
|