Changeset 462 for trunk

Show
Ignore:
Timestamp:
01/09/10 22:25:05 (2 years ago)
Author:
scriado
Message:

* FIX: Add iptables rule to prevent access from clients nodes to computers conected on private ap in gateway node.
* Final release 0.7. (Code name Barbecue)

Location:
trunk/nightwing/etc
Files:
3 modified

Legend:

Unmodified
Added
Removed
  • trunk/nightwing/etc/CHANGELOG

    r451 r462  
    1313* FIX: nw_conf. Variables parsing 
    1414* FIX: Restrictions in Private Address Space reserved for IANA 
     15* FIX: Add iptables rule to prevent access from clients nodes to computers conected on private ap in gateway node. 
    1516 
    1617Versión 0.6-beta4 
  • trunk/nightwing/etc/init.d/nightwing

    r456 r462  
    286286                $IPTABLES -I FORWARD -d ${GATEWAY_IP}/${MASK} -j DROP 
    287287                $IPTABLES -I FORWARD -i $PUBLIC_AP_IFACE -o $PRIVATE_AP_IFACE -j DROP 
    288                 ### Drop external packet towar LAN (IANA reserved RFC1918) 
     288                ### Drop external packet towards LAN (IANA reserved RFC1918) 
    289289                $IPTABLES -I FORWARD -i $PUBLIC_AP_IFACE -d 10.0.0.0/8 -j DROP 
    290290                $IPTABLES -I FORWARD -i $PUBLIC_AP_IFACE -d 172.16.0.0/12 -j DROP 
     
    294294                $IPTABLES -I FORWARD -i $PRIVATE_AP_IFACE -d ${GATEWAY_IP}/${MASK} -j ACCEPT 
    295295                $IPTABLES -I OUTPUT -s $TUNNEL_NETWORK -o $LAN_IFACE -d  ${GATEWAY_IP}/${MASK} -j DROP 
    296                  
     296 
     297                ### Drop external packet towards PRIVATE_AP_IFACE 
     298                $IPTABLES -I FORWARD -i $TUNNEL_IFACE -o $PRIVATE_AP_IFACE -j DROP 
    297299 
    298300                # Intercept DNS Query in PUBLIC_AP_IFACE/MESH and REDIRECT to local dns 
  • trunk/nightwing/etc/nightwing_version

    r461 r462  
    1 0.7rc2 
     10.7