enable outbound http for now again.

master
Robert "ar" Gerus 2013-03-12 13:27:36 +01:00
parent 67de643a77
commit 7c70c33a2a
1 changed files with 2 additions and 0 deletions

View File

@ -6,6 +6,8 @@ rules() {
# outbound DNS
iptables -t filter $flag OUTPUT -o ${IF_WAN} -p tcp --dport 53 -j ACCEPT
iptables -t filter $flag OUTPUT -o ${IF_WAN} -p udp --dport 53 -j ACCEPT
# outbound http
iptables -t filter $flag OUTPUT -o ${IF_WAN} -p tcp --dport 80 -j ACCEPT
# i hate having a multitude of stateless INPUT rules
iptables -t filter $flag INPUT -i ${IF_WAN} -m conntrack --ctstate RELATED,ESTABLISHED -j ACCEPT