summaryrefslogtreecommitdiffstats
path: root/extensions/libxt_multiport.txlate
diff options
context:
space:
mode:
authorPablo Neira Ayuso <pablo@netfilter.org>2021-06-25 23:05:12 +0200
committerPablo Neira Ayuso <pablo@netfilter.org>2021-06-25 23:08:09 +0200
commit9e1fffdfeb29a0638e10fda3c0e984d3592e3124 (patch)
tree1fb8d3a3bdf42d78c2d40d22ab209f5e9bd396c5 /extensions/libxt_multiport.txlate
parentc8145139cb230ff22837795c97f2e264c574c64c (diff)
extensions: libxt_multiport: add translation for -m multiport --ports
Add a translation for -m multiport --ports. Extend the existing testcase. Signed-off-by: Pablo Neira Ayuso <pablo@netfilter.org>
Diffstat (limited to 'extensions/libxt_multiport.txlate')
-rw-r--r--extensions/libxt_multiport.txlate3
1 files changed, 3 insertions, 0 deletions
diff --git a/extensions/libxt_multiport.txlate b/extensions/libxt_multiport.txlate
index 752e7148..bced1b84 100644
--- a/extensions/libxt_multiport.txlate
+++ b/extensions/libxt_multiport.txlate
@@ -9,3 +9,6 @@ nft add rule ip filter INPUT ip protocol tcp tcp dport != 80-88 counter accept
iptables-translate -t filter -A INPUT -p tcp -m multiport --sports 50 -j ACCEPT
nft add rule ip filter INPUT ip protocol tcp tcp sport 50 counter accept
+
+iptables-translate -t filter -I INPUT -p tcp -m multiport --ports 10
+nft insert rule ip filter INPUT ip protocol tcp tcp sport . tcp dport { 0-65535 . 10, 10 . 0-65535 } counter