From bbabeeab2748ea21212b2ce3cbf9a976c1cd0951 Mon Sep 17 00:00:00 2001 From: Christoph Date: Wed, 24 Jul 2024 17:14:04 +0200 Subject: [PATCH] Add support for PGP/GPG Key server.. --- ip6t-firewall-server | 16 ++++++++++++++++ ipt-firewall-server | 16 ++++++++++++++++ 2 files changed, 32 insertions(+) diff --git a/ip6t-firewall-server b/ip6t-firewall-server index a090652..cb5a801 100755 --- a/ip6t-firewall-server +++ b/ip6t-firewall-server @@ -2331,6 +2331,22 @@ done echo_done +# --- +# - PGP Keyserver out only +# --- + +echononl "\t\tPGP/GPG Key server - out only" + +for _dev in ${ext_if_arr[@]} ; do + $ip6t -A OUTPUT -o $_dev -p tcp --dport $standard_pgp_keyserver_port -m state --state NEW -j ACCEPT + if $kernel_forward_between_interfaces ; then + $ip6t -A FORWARD -o $_dev -p tcp --dport $standard_pgp_keyserver_port -m state --state NEW -j ACCEPT + fi +done + +echo_done + + # --- # - GIT out only # --- diff --git a/ipt-firewall-server b/ipt-firewall-server index 5e9e6ec..85e8fd7 100755 --- a/ipt-firewall-server +++ b/ipt-firewall-server @@ -2503,6 +2503,22 @@ done echo_done +# --- +# - PGP Keyserver out only +# --- + +echononl "\t\tPGP/GPG Key server - out only" + +for _dev in ${ext_if_arr[@]} ; do + $ipt -A OUTPUT -o $_dev -p tcp --dport $standard_pgp_keyserver_port -m state --state NEW -j ACCEPT + if $kernel_activate_forwarding ; then + $ipt -A FORWARD -o $_dev -p tcp --dport $standard_pgp_keyserver_port -m state --state NEW -j ACCEPT + fi +done + +echo_done + + # --- # - GIT out only # ---