2015-05-28 11:32:57 +02:00
|
|
|
*filter
|
|
|
|
:INPUT ACCEPT [0:0]
|
|
|
|
:FORWARD ACCEPT [0:0]
|
|
|
|
:OUTPUT ACCEPT [0:0]
|
2015-07-15 13:59:23 +02:00
|
|
|
{% if iptables_default_policy == 'REJECT' %}
|
2015-07-16 13:25:02 +02:00
|
|
|
-A INPUT -j REJECT --reject-with icmp6-addr-unreachable
|
|
|
|
-A FORWARD -j REJECT --reject-with icmp6-addr-unreachable
|
2015-07-15 13:59:23 +02:00
|
|
|
{% else %}
|
|
|
|
-A INPUT -j {{ iptables_default_policy }}
|
|
|
|
-A FORWARD -j {{ iptables_default_policy }}
|
|
|
|
{% endif %}
|
2015-05-28 11:32:57 +02:00
|
|
|
COMMIT
|