From 1818023bf0097bbc0eac2bf196bb5dd3aaca65f2 Mon Sep 17 00:00:00 2001 From: blogic Date: Wed, 27 Aug 2008 19:16:54 +0000 Subject: make uci firewall backwards compatible to the old firewall.user git-svn-id: svn://svn.openwrt.org/openwrt/trunk@12408 3c298f89-4303-0410-b956-a3cf2f4a3e73 --- package/firewall/files/uci_firewall.sh | 11 +++++++++-- 1 file changed, 9 insertions(+), 2 deletions(-) (limited to 'package/firewall') diff --git a/package/firewall/files/uci_firewall.sh b/package/firewall/files/uci_firewall.sh index b7bdcd6e7..0ce878b7f 100755 --- a/package/firewall/files/uci_firewall.sh +++ b/package/firewall/files/uci_firewall.sh @@ -303,14 +303,21 @@ fw_addif() { fw_custom_chains() { $IPTABLES -N input_rule $IPTABLES -N output_rule - $IPTABLES -N forward_rule + $IPTABLES -N forwarding_rule $IPTABLES -N prerouting_rule -t nat $IPTABLES -N postrouting_rule -t nat + $IPTABLES -N input_wan + $IPTABLES -N forwarding_wan + $IPTABLES -N prerouting_wan -t nat + $IPTABLES -A INPUT -j input_rule $IPTABLES -A OUTPUT -j output_rule - $IPTABLES -A FORWARD -j forward_rule + $IPTABLES -A FORWARD -j forwarding_rule $IPTABLES -A PREROUTING -t nat -j prerouting_rule $IPTABLES -A POSTROUTING -t nat -j postrouting_rule + $IPTABLES -A zone_wan -j input_wan + $IPTABLES -A zone_wan_forward -j forwarding_wan + $IPTABLES -A zone_wan_prerouting -t nat -j prerouting_wan } fw_init() { -- cgit v1.2.3