zapret/init.d/openwrt/firewall.zapret.nfqws_ipset

12 lines
367 B
Plaintext
Raw Normal View History

2019-05-03 12:44:43 +03:00
QNUM=200
IPT_FILTER_PRE="-p tcp --sport 80 -m set --match-set zapret src"
IPT_FILTER_POST="-p tcp --dport 80 -m set --match-set zapret dst"
ipt()
{
iptables -C $@ 2>/dev/null || iptables -I $@
}
2019-05-03 12:44:43 +03:00
ipt PREROUTING -t raw $IPT_FILTER_PRE -j NFQUEUE --queue-num $QNUM --queue-bypass
ipt POSTROUTING -t mangle $IPT_FILTER_POST -j NFQUEUE --queue-num $QNUM --queue-bypass