$IPTABLES -A allow-ssh-traffic-in -m state --state RELATED,ESTABLISHED --dport ssh -j ACCEPT Results in: iptables v1.2.8: Unknown arg `--dport' Try `iptables -h' or 'iptables --help' for more information. The correct example is: $IPTABLES -A allow-ssh-traffic-in -m state --state RELATED,ESTABLISHED -p tcp --dport ssh -j ACCEPT
I only have access to an old konqueror and dillo browser and both seem unable to post the patch file so I just copy pasted it below: --- gentoo-security-1.15.xml 2003-09-15 20:37:04.000000000 +0200 +++ gentoo-security-iptables.xml 2003-09-15 19:29:55.000000000 +0200 @@ -2583,7 +2583,7 @@ ALL FIN --dport ssh -j ACCEPT $IPTABLES -A allow-ssh-traffic-in -m limit --limit 1/second -p tcp --tcp-flags \ ALL SYN --dport ssh -j ACCEPT - $IPTABLES -A allow-ssh-traffic-in -m state --state RELATED,ESTABLISHED --dport ssh -j ACCEPT + $IPTABLES -A allow-ssh-traffic-in -m state --state RELATED,ESTABLISHED -p tcp --dport ssh -j ACCEPT #outgoing traffic einfo "Creating outgoing ssh traffic chain"
Created attachment 17783 [details, diff] patch for 28816 & 28817
Please review the patch
Created attachment 17794 [details, diff] patch for Bug 28816, 28817 and 28841
Patch is fine. Reviewed.
committed! thanks for your notification and patches :)