diff options
author | Pablo Neira Ayuso <pablo@netfilter.org> | 2021-06-25 23:05:12 +0200 |
---|---|---|
committer | Pablo Neira Ayuso <pablo@netfilter.org> | 2021-06-25 23:08:09 +0200 |
commit | 9e1fffdfeb29a0638e10fda3c0e984d3592e3124 (patch) | |
tree | 1fb8d3a3bdf42d78c2d40d22ab209f5e9bd396c5 /extensions/libxt_multiport.txlate | |
parent | c8145139cb230ff22837795c97f2e264c574c64c (diff) |
extensions: libxt_multiport: add translation for -m multiport --ports
Add a translation for -m multiport --ports. Extend the existing testcase.
Signed-off-by: Pablo Neira Ayuso <pablo@netfilter.org>
Diffstat (limited to 'extensions/libxt_multiport.txlate')
-rw-r--r-- | extensions/libxt_multiport.txlate | 3 |
1 files changed, 3 insertions, 0 deletions
diff --git a/extensions/libxt_multiport.txlate b/extensions/libxt_multiport.txlate index 752e7148..bced1b84 100644 --- a/extensions/libxt_multiport.txlate +++ b/extensions/libxt_multiport.txlate @@ -9,3 +9,6 @@ nft add rule ip filter INPUT ip protocol tcp tcp dport != 80-88 counter accept iptables-translate -t filter -A INPUT -p tcp -m multiport --sports 50 -j ACCEPT nft add rule ip filter INPUT ip protocol tcp tcp sport 50 counter accept + +iptables-translate -t filter -I INPUT -p tcp -m multiport --ports 10 +nft insert rule ip filter INPUT ip protocol tcp tcp sport . tcp dport { 0-65535 . 10, 10 . 0-65535 } counter |