From 1a9ee646c61ae074248a6cbf87ef0beb2f34d3a6 Mon Sep 17 00:00:00 2001 From: Daniel Winzen Date: Sun, 6 May 2018 09:57:24 +0200 Subject: [PATCH] Adapt firewall rule to new ftp ports --- etc/rc.local | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/etc/rc.local b/etc/rc.local index 0f46190..a4e79f9 100755 --- a/etc/rc.local +++ b/etc/rc.local @@ -39,7 +39,7 @@ iptables -A OUTPUT -p udp --dport 123 -d $clearnet -j ACCEPT )done #restrict local communication for php and webserver #allowed tcp ports -for port in 3306 9040 9050 110 143 25 21 5000:5020; do( +for port in 3306 9040 9050 110 143 25 21 5000:5050; do( iptables -A OUTPUT -d 127.0.0.0/8 -p tcp --dport $port -m owner --gid-owner www-data -j ACCEPT; ip6tables -A OUTPUT -d ::1 -p tcp --dport $port -m owner --gid-owner www-data -j ACCEPT )done