]> git.proxmox.com Git - pve-firewall.git/blobdiff - example/host.fw
plug venet0 chains into PVEFW-FORWARD
[pve-firewall.git] / example / host.fw
index 11cd44f2b4a9dc7ec9809883f413f66a00d794aa..32311b4b55be163893291dbbed71b6f4088978ae 100644 (file)
@@ -5,5 +5,17 @@
 enable: 0
 tcp_flags_log_level: info
 smurf_log_level: nolog
+log_level_in: info
+log_level_out: info
 
-# TODO
\ No newline at end of file
+# default policy
+policy_in: DROP
+policy_out: ACCEPT
+
+nf_conntrack_max: 196608
+
+
+[RULES]
+
+IN  SSH(ACCEPT) net0
+OUT SSH(ACCEPT) net0