summaryrefslogtreecommitdiff
diff options
context:
space:
mode:
authorJo-Philipp Wich <jow@openwrt.org>2009-04-12 22:38:34 +0000
committerJo-Philipp Wich <jow@openwrt.org>2009-04-12 22:38:34 +0000
commit97100e0248e722aed43925177a12f2d3ab7a7753 (patch)
tree5b4549b26ddab96e1a665bdb71050d45603b184b
parenta03e00bbcf314d731bf0df5ff1f43122c4968711 (diff)
downloadmtk-20170518-97100e0248e722aed43925177a12f2d3ab7a7753.zip
mtk-20170518-97100e0248e722aed43925177a12f2d3ab7a7753.tar.gz
mtk-20170518-97100e0248e722aed43925177a12f2d3ab7a7753.tar.bz2
firewall: enable /etc/firewall.user by default and install sample firewall.user file
SVN-Revision: 15221
-rw-r--r--package/firewall/Makefile2
-rw-r--r--[-rwxr-xr-x]package/firewall/files/firewall.config8
-rw-r--r--package/firewall/files/firewall.user4
3 files changed, 9 insertions, 5 deletions
diff --git a/package/firewall/Makefile b/package/firewall/Makefile
index 9d4e5dd..7aa3855 100644
--- a/package/firewall/Makefile
+++ b/package/firewall/Makefile
@@ -9,7 +9,7 @@ include $(TOPDIR)/rules.mk
PKG_NAME:=firewall
PKG_VERSION:=1
-PKG_RELEASE:=1
+PKG_RELEASE:=2
include $(INCLUDE_DIR)/package.mk
diff --git a/package/firewall/files/firewall.config b/package/firewall/files/firewall.config
index 46f7de5..464540f 100755..100644
--- a/package/firewall/files/firewall.config
+++ b/package/firewall/files/firewall.config
@@ -22,6 +22,10 @@ config forwarding
option dest wan
option mtu_fix 1
+# include a file with users custom iptables rules
+config include
+ option path /etc/firewall.user
+
### EXAMPLE CONFIG SECTIONS
# do not allow a specific ip to access wan
@@ -53,10 +57,6 @@ config forwarding
# option dest_port 80
# option proto tcp
-# include a file with users custom iptables rules
-#config include
-# option path /etc/firewall.user
-
### FULL CONFIG SECTIONS
#config rule
diff --git a/package/firewall/files/firewall.user b/package/firewall/files/firewall.user
new file mode 100644
index 0000000..1ccbd01
--- /dev/null
+++ b/package/firewall/files/firewall.user
@@ -0,0 +1,4 @@
+# This file is interpreted as shell script.
+# Put your custom iptables rules here, they will
+# be executed with each firewall (re-)start.
+