diff --git a/ipt-firewall-server b/ipt-firewall-server index 96890be..bf3a9e9 100755 --- a/ipt-firewall-server +++ b/ipt-firewall-server @@ -744,13 +744,11 @@ echononl "\tRestrict local Servive to given (extern) IP-Address/Network" if [[ ${#restrict_local_service_to_net_arr[@]} -gt 0 ]] ; then _deny_service_arr=() - echo "" for _val in "${restrict_local_service_to_net_arr[@]}" ; do IFS=':' read -a _val_arr <<< "${_val}" for _dev in ${ext_if_arr[@]} ; do - echo "$ipt -A INPUT -i $_dev -p ${_val_arr[3]} -s ${_val_arr[0]} -d ${_val_arr[1]} --dport ${_val_arr[2]} -m conntrack --ctstate NEW -j ACCEPT" $ipt -A INPUT -i $_dev -p ${_val_arr[3]} -s ${_val_arr[0]} -d ${_val_arr[1]} --dport ${_val_arr[2]} -m conntrack --ctstate NEW -j ACCEPT if ! containsElement "${_dev}:${_val_arr[1]}:${_val_arr[2]}:${_val_arr[3]}" "${_deny_service_arr[@]}" ; then @@ -763,7 +761,6 @@ if [[ ${#restrict_local_service_to_net_arr[@]} -gt 0 ]] ; then for _val in "${_deny_service_arr[@]}" ; do IFS=':' read -a _val_arr <<< "${_val}" - echo "$ipt -A INPUT -i ${_val_arr[0]} -p ${_val_arr[3]} -d ${_val_arr[1]} --dport ${_val_arr[2]} -j DROP" $ipt -A INPUT -i ${_val_arr[0]} -p ${_val_arr[3]} -d ${_val_arr[1]} --dport ${_val_arr[2]} -j DROP done