diff options
| -rwxr-xr-x | server/modules/openstack-firewall/opt/openslx/iptables/rules.d/60-openstack-firewall | 10 |
1 files changed, 10 insertions, 0 deletions
diff --git a/server/modules/openstack-firewall/opt/openslx/iptables/rules.d/60-openstack-firewall b/server/modules/openstack-firewall/opt/openslx/iptables/rules.d/60-openstack-firewall new file mode 100755 index 00000000..136f5c38 --- /dev/null +++ b/server/modules/openstack-firewall/opt/openslx/iptables/rules.d/60-openstack-firewall @@ -0,0 +1,10 @@ +#!/bin/ash + +# VNC +iptables -A INPUT -i br0 -p tcp -s 10.4.9.73 --dport 5900:5999 -j ACCEPT +iptables -A INPUT -i br0 -p tcp --dport 5900:5999 -j REJECT + +# KVM +iptables -A INPUT -i br0 -p tcp -s 132.230.4.0/24 --dport 16509 -j ACCEPT +iptables -A INPUT -i br0 -p tcp --dport 16509 -j REJECT + |
