blob: 0d6c646186a43a16b91aaba574d747c40098757c [file] [log] [blame]
Andrea Campanellaedfdbca2017-02-01 17:33:47 -08001#
2# rules.input-after
3#
4# Rules that should be run after the ufw command line added rules. Custom
5# rules should be added to one of these chains:
6# ufw-after-input
7# ufw-after-output
8# ufw-after-forward
9#
10
11# Don't delete these required lines, otherwise there will be errors
12*filter
13:ufw-after-input - [0:0]
14:ufw-after-output - [0:0]
15:ufw-after-forward - [0:0]
16# End required lines
17
18# don't log noisy services by default
19-A ufw-after-input -p udp --dport 137 -j ufw-skip-to-policy-input
20-A ufw-after-input -p udp --dport 138 -j ufw-skip-to-policy-input
21-A ufw-after-input -p tcp --dport 139 -j ufw-skip-to-policy-input
22-A ufw-after-input -p tcp --dport 445 -j ufw-skip-to-policy-input
23-A ufw-after-input -p udp --dport 67 -j ufw-skip-to-policy-input
24-A ufw-after-input -p udp --dport 68 -j ufw-skip-to-policy-input
25
26# don't log noisy broadcast
27-A ufw-after-input -m addrtype --dst-type BROADCAST -j ufw-skip-to-policy-input
28
29# don't delete the 'COMMIT' line or these rules won't be processed
30COMMIT