summaryrefslogtreecommitdiff
diff options
context:
space:
mode:
-rw-r--r--etc/hostapd/appliance/iptables.sample5
-rw-r--r--etc/optional/ipv6/hostapd/appliance/ip6tables.sample5
-rw-r--r--etc/optional/ipv6/wpa_supplicant/appliance/ip6tables.sample3
-rw-r--r--etc/wpa_supplicant/appliance/iptables.sample3
4 files changed, 2 insertions, 14 deletions
diff --git a/etc/hostapd/appliance/iptables.sample b/etc/hostapd/appliance/iptables.sample
index b9e2044..70bc050 100644
--- a/etc/hostapd/appliance/iptables.sample
+++ b/etc/hostapd/appliance/iptables.sample
@@ -9,15 +9,12 @@
*filter
:INPUT ACCEPT [0:0]
-:FORWARD ACCEPT [0:0]
:OUTPUT ACCEPT [0:0]
-[0:0] -A FORWARD -i wlan0 -o eth0 -m state --state RELATED,ESTABLISHED -j ACCEPT
-[0:0] -A FORWARD -i wlan0 -o eth0 -j ACCEPT
COMMIT
*nat
-:PREROUTING ACCEPT [0:0]
:INPUT ACCEPT [0:0]
:OUTPUT ACCEPT [0:0]
+:PREROUTING ACCEPT [0:0]
:POSTROUTING ACCEPT [0:0]
[0:0] -A POSTROUTING -o eth0 -j MASQUERADE
COMMIT
diff --git a/etc/optional/ipv6/hostapd/appliance/ip6tables.sample b/etc/optional/ipv6/hostapd/appliance/ip6tables.sample
index a2dd906..f612a24 100644
--- a/etc/optional/ipv6/hostapd/appliance/ip6tables.sample
+++ b/etc/optional/ipv6/hostapd/appliance/ip6tables.sample
@@ -9,15 +9,12 @@
*filter
:INPUT ACCEPT [0:0]
-:FORWARD ACCEPT [0:0]
:OUTPUT ACCEPT [0:0]
-[0:0] -A FORWARD -i wlan0 -o eth0 -m state --state RELATED,ESTABLISHED -j ACCEPT
-[0:0] -A FORWARD -i wlan0 -o eth0 -j ACCEPT
COMMIT
*nat
-:PREROUTING ACCEPT [0:0]
:INPUT ACCEPT [0:0]
:OUTPUT ACCEPT [0:0]
+:PREROUTING ACCEPT [0:0]
:POSTROUTING ACCEPT [0:0]
[0:0] -A POSTROUTING -o eth0 -j MASQUERADE
COMMIT
diff --git a/etc/optional/ipv6/wpa_supplicant/appliance/ip6tables.sample b/etc/optional/ipv6/wpa_supplicant/appliance/ip6tables.sample
index 42d881f..1503bc3 100644
--- a/etc/optional/ipv6/wpa_supplicant/appliance/ip6tables.sample
+++ b/etc/optional/ipv6/wpa_supplicant/appliance/ip6tables.sample
@@ -10,9 +10,6 @@
*filter
:INPUT ACCEPT [0:0]
:OUTPUT ACCEPT [0:0]
-:FORWARD ACCEPT [0:0]
-[0:0] -A FORWARD -i eth0 -o wlan0 -m state --state RELATED,ESTABLISHED -j ACCEPT
-[0:0] -A FORWARD -i eth0 -o wlan0 -j ACCEPT
COMMIT
*nat
:INPUT ACCEPT [0:0]
diff --git a/etc/wpa_supplicant/appliance/iptables.sample b/etc/wpa_supplicant/appliance/iptables.sample
index 3a3cd5f..4543480 100644
--- a/etc/wpa_supplicant/appliance/iptables.sample
+++ b/etc/wpa_supplicant/appliance/iptables.sample
@@ -10,9 +10,6 @@
*filter
:INPUT ACCEPT [0:0]
:OUTPUT ACCEPT [0:0]
-:FORWARD ACCEPT [0:0]
-[0:0] -A FORWARD -i eth0 -o wlan0 -m state --state RELATED,ESTABLISHED -j ACCEPT
-[0:0] -A FORWARD -i eth0 -o wlan0 -j ACCEPT
COMMIT
*nat
:INPUT ACCEPT [0:0]