]> git.donarmstrong.com Git - dsa-puppet.git/commitdiff
make MS ports quiet
authorStephen Gran <steve@lobefin.net>
Tue, 23 Feb 2010 19:05:34 +0000 (19:05 +0000)
committerStephen Gran <steve@lobefin.net>
Tue, 23 Feb 2010 19:05:34 +0000 (19:05 +0000)
Signed-off-by: Stephen Gran <steve@lobefin.net>
modules/ferm/files/ferm.conf

index f761b01e82ed39cc3cbd2e4d7da1d57b0ef6404b..c63c8ea7d936307e636161e77b184c4abf4260b8 100644 (file)
@@ -54,6 +54,8 @@ domain (ip ip6) {
 
 domain (ip ip6) {
         chain INPUT {
+                proto udp dport 137 DROP;
+                proto tcp mod multiport destination-ports (137 445) DROP;
                 jump log_or_drop;
         }
 }