From c05a061e4ea5e6c031ee9b48d06899cacd595dbe Mon Sep 17 00:00:00 2001 From: Felix Fietkau Date: Tue, 27 Mar 2007 16:45:10 +0000 Subject: fix a problem with the firewall script (multicast traffic could produce packet loss) SVN-Revision: 6726 --- package/iptables/files/firewall.init | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) (limited to 'package/iptables/files') diff --git a/package/iptables/files/firewall.init b/package/iptables/files/firewall.init index 290bae1..310b0ec 100755 --- a/package/iptables/files/firewall.init +++ b/package/iptables/files/firewall.init @@ -100,7 +100,7 @@ start() { # uses the default -P DROP ### MASQ - iptables -t nat -A PREROUTING -m state --state NEW -j NEW + iptables -t nat -A PREROUTING -m state --state NEW -p tcp -j NEW iptables -t nat -A PREROUTING -j prerouting_rule [ -z "$WAN" ] || iptables -t nat -A PREROUTING -i "$WAN" -j prerouting_wan iptables -t nat -A POSTROUTING -j postrouting_rule -- cgit v1.1