INT6_IF=eth5
SUBNET6='2001:470:1f05:cb8::/64'
-UPLINK=11232 #kbit
-BURST=15 #k
-
# note that behavior between v4 and v6 is slightly different
###
# accept internal network traffic
$IPTABLES -A INPUT -i ${INT_IF} -j ACCEPT
-# accept list of external ports
-$IPTABLES -A INPUT -i ${EXT_IF} -p tcp -m set --match-set allowed_tcp dst -j ACCEPT
-$IPTABLES -A INPUT -i ${EXT_IF} -p udp -m set --match-set allowed_udp dst -j ACCEPT
-$IP6TABLES -A INPUT -i ${EXT6_IF} -p tcp -m set --match-set allowed_tcp dst -j ACCEPT
-$IP6TABLES -A INPUT -i ${EXT6_IF} -p udp -m set --match-set allowed_udp dst -j ACCEPT
+./services ${EXT_IF} ${EXT6_IF}
# load rules
# inserts, so stack order matters