Sophie

Sophie

distrib > Mandriva > 2010.0 > i586 > media > contrib-release > by-pkgid > dca483b59ba61f3fa092de932ddd570e > files > 834

nuface-2.0.14-2mdv2009.1.i586.rpm

#Generated by nupyf on 2008-11-26 12:40:40.766568 from ./descsort/acls_descsort.xml

#DISPATCH and DEFAULT Rules
:INTERNET-INTERNET -
:INTERNET-test2silent -
:INTERNET-test3silent -
:INTERNET-TEST -
:INTERNET-Essai -
:test2silent-INTERNET -
:test2silent-test2silent -
:test2silent-test3silent -
:test2silent-TEST -
:test2silent-Essai -
:test3silent-INTERNET -
:test3silent-test2silent -
:test3silent-test3silent -
:test3silent-TEST -
:test3silent-Essai -
:TEST-INTERNET -
:TEST-test2silent -
:TEST-test3silent -
:TEST-TEST -
:TEST-Essai -
:Essai-INTERNET -
:Essai-test2silent -
:Essai-test3silent -
:Essai-TEST -
:Essai-Essai -
:IF-INTERNET -
:INTERNET-IF -
:IF-test2silent -
:test2silent-IF -
:IF-test3silent -
:test3silent-IF -
:IF-TEST -
:TEST-IF -
:IF-Essai -
:Essai-IF -
-A FORWARD -m state --state ESTABLISHED,RELATED -j ACCEPT
-A INPUT -m state --state ESTABLISHED,RELATED -j ACCEPT
-A OUTPUT -m state --state ESTABLISHED,RELATED -j ACCEPT
-A FORWARD -m state --state INVALID -j DROP
-A INPUT -m state --state INVALID -j DROP
-A OUTPUT -m state --state INVALID -j DROP

-A FORWARD -s 192.168.2.192 -d 192.168.115.96/27 -m policy --pol ipsec --mode tunnel --dir in --tunnel-src 192.168.33.132 --tunnel-dst 192.168.35.254 -i eth0 -o eth2 -j test2silent-Essai
-A FORWARD -s 192.168.2.199 -d 192.168.115.96/27 -m policy --pol ipsec --mode tunnel --dir in --tunnel-src 192.168.33.132 --tunnel-dst 192.168.35.254 -i eth0 -o eth2 -j test3silent-Essai
-A FORWARD -s 192.168.115.96/27 -d 192.168.2.192 -m policy --pol ipsec --mode tunnel --dir out --tunnel-src 192.168.35.254 --tunnel-dst 192.168.33.132 -i eth2 -o eth0 -j Essai-test2silent
-A FORWARD -s 192.168.115.96/27 -d 192.168.2.199 -m policy --pol ipsec --mode tunnel --dir out --tunnel-src 192.168.35.254 --tunnel-dst 192.168.33.132 -i eth2 -o eth0 -j Essai-test3silent
-A FORWARD -s 192.168.2.192 -d 192.168.37.0/24 -m policy --pol ipsec --mode tunnel --dir in --tunnel-src 192.168.33.132 --tunnel-dst 192.168.35.254 -i eth0 -o eth1 -j test2silent-TEST
-A FORWARD -s 192.168.2.199 -d 192.168.37.0/24 -m policy --pol ipsec --mode tunnel --dir in --tunnel-src 192.168.33.132 --tunnel-dst 192.168.35.254 -i eth0 -o eth1 -j test3silent-TEST
-A FORWARD -s 192.168.37.0/24 -d 192.168.2.192 -m policy --pol ipsec --mode tunnel --dir out --tunnel-src 192.168.35.254 --tunnel-dst 192.168.33.132 -i eth1 -o eth0 -j TEST-test2silent
-A FORWARD -s 192.168.37.0/24 -d 192.168.2.199 -m policy --pol ipsec --mode tunnel --dir out --tunnel-src 192.168.35.254 --tunnel-dst 192.168.33.132 -i eth1 -o eth0 -j TEST-test3silent
-A FORWARD -s 192.168.2.192 -m policy --pol ipsec --mode tunnel --dir in --tunnel-src 192.168.33.132 --tunnel-dst 192.168.35.254 -i eth0 -o eth0 -j test2silent-INTERNET
-A FORWARD -s 192.168.2.199 -m policy --pol ipsec --mode tunnel --dir in --tunnel-src 192.168.33.132 --tunnel-dst 192.168.35.254 -i eth0 -o eth0 -j test3silent-INTERNET
-A FORWARD -d 192.168.2.192 -m policy --pol ipsec --mode tunnel --dir out --tunnel-src 192.168.35.254 --tunnel-dst 192.168.33.132 -i eth0 -o eth0 -j INTERNET-test2silent
-A FORWARD -d 192.168.2.199 -m policy --pol ipsec --mode tunnel --dir out --tunnel-src 192.168.35.254 --tunnel-dst 192.168.33.132 -i eth0 -o eth0 -j INTERNET-test3silent
-A FORWARD -s 192.168.115.96/27 -d 192.168.115.96/27 -i eth2 -o eth2 -j Essai-Essai
-A FORWARD -s 192.168.115.96/27 -d 192.168.37.0/24 -i eth2 -o eth1 -j Essai-TEST
-A FORWARD -s 192.168.37.0/24 -d 192.168.115.96/27 -i eth1 -o eth2 -j TEST-Essai
-A FORWARD -s 192.168.37.0/24 -d 192.168.37.0/24 -i eth1 -o eth1 -j TEST-TEST
-A INPUT -s 192.168.2.192 -i eth0 -j test2silent-IF
-A INPUT -s 192.168.2.199 -i eth0 -j test3silent-IF
-A INPUT -s 192.168.115.96/27 -i eth2 -j Essai-IF
-A INPUT -s 192.168.37.0/24 -i eth1 -j TEST-IF
-A OUTPUT -d 192.168.2.192 -o eth0 -j IF-test2silent
-A OUTPUT -d 192.168.2.199 -o eth0 -j IF-test3silent
-A OUTPUT -d 192.168.37.0/24 -o eth1 -j IF-TEST
-A OUTPUT -d 192.168.115.96/27 -o eth2 -j IF-Essai
-A INPUT -i eth0 -j INTERNET-IF
-A OUTPUT -o eth0 -j IF-INTERNET
-A FORWARD -s 192.168.115.96/27 -i eth2 -o eth0 -j Essai-INTERNET
-A FORWARD -d 192.168.115.96/27 -i eth0 -o eth2 -j INTERNET-Essai
-A FORWARD -s 192.168.37.0/24 -i eth1 -o eth0 -j TEST-INTERNET
-A FORWARD -d 192.168.37.0/24 -i eth0 -o eth1 -j INTERNET-TEST
-A FORWARD -i eth0 -o eth0 -j INTERNET-INTERNET

-A INPUT -i lo -j ACCEPT
-A OUTPUT -o lo -j ACCEPT

-A FORWARD -j ULOG --ulog-prefix "DFT_FORWARD_DROP"
-A FORWARD -j DROP
-A INPUT -j ULOG --ulog-prefix "DFT_INPUT_DROP"
-A INPUT -j DROP
-A OUTPUT -j ULOG --ulog-prefix "DFT_OUTPUT_DROP"
-A OUTPUT -j DROP