| # |
| # rules.input-after |
| # |
| # Rules that should be run after the ufw command line added rules. Custom |
| # rules should be added to one of these chains: |
| # ufw-after-input |
| # ufw-after-output |
| # ufw-after-forward |
| # |
| |
| # Don't delete these required lines, otherwise there will be errors |
| *filter |
| :ufw-after-input - [0:0] |
| :ufw-after-output - [0:0] |
| :ufw-after-forward - [0:0] |
| # End required lines |
| |
| # don't log noisy services by default |
| -A ufw-after-input -p udp --dport 137 -j ufw-skip-to-policy-input |
| -A ufw-after-input -p udp --dport 138 -j ufw-skip-to-policy-input |
| -A ufw-after-input -p tcp --dport 139 -j ufw-skip-to-policy-input |
| -A ufw-after-input -p tcp --dport 445 -j ufw-skip-to-policy-input |
| -A ufw-after-input -p udp --dport 67 -j ufw-skip-to-policy-input |
| -A ufw-after-input -p udp --dport 68 -j ufw-skip-to-policy-input |
| |
| # don't log noisy broadcast |
| -A ufw-after-input -m addrtype --dst-type BROADCAST -j ufw-skip-to-policy-input |
| |
| # don't delete the 'COMMIT' line or these rules won't be processed |
| COMMIT |