@include 'conf.d/';
+domain (ip ip6) {
+ table filter {
+ chain (INPUT OUTPUT) {
+ NOP;
+ }
+ }
+}
+
domain ip {
table filter {
chain log_and_reject {
domain (ip ip6) {
chain INPUT {
+ proto (tcp udp) mod multiport destination-ports (135 137 138 139 445 1026 1027 1433) DROP;
jump log_or_drop;
}
}