@include 'conf.d/';
+domain (ip ip6) {
+ table filter {
+ chain (INPUT OUTPUT) {
+ NOP;
+ }
+ }
+}
+
domain ip {
table filter {
chain log_and_reject {
}
@include 'dsa.d/';
+
+domain (ip ip6) {
+ chain INPUT {
+ proto (tcp udp) mod multiport destination-ports (135 137 138 139 445 1026 1027 1433) DROP;
+ jump log_or_drop;
+ }
+}