#Generated by nupyf on 2008-11-26 12:40:40.766568 from ./descsort/acls_descsort.xml #DISPATCH and DEFAULT Rules :INTERNET-INTERNET - :INTERNET-test2silent - :INTERNET-test3silent - :INTERNET-TEST - :INTERNET-Essai - :test2silent-INTERNET - :test2silent-test2silent - :test2silent-test3silent - :test2silent-TEST - :test2silent-Essai - :test3silent-INTERNET - :test3silent-test2silent - :test3silent-test3silent - :test3silent-TEST - :test3silent-Essai - :TEST-INTERNET - :TEST-test2silent - :TEST-test3silent - :TEST-TEST - :TEST-Essai - :Essai-INTERNET - :Essai-test2silent - :Essai-test3silent - :Essai-TEST - :Essai-Essai - :IF-INTERNET - :INTERNET-IF - :IF-test2silent - :test2silent-IF - :IF-test3silent - :test3silent-IF - :IF-TEST - :TEST-IF - :IF-Essai - :Essai-IF - -A FORWARD -m state --state ESTABLISHED,RELATED -j ACCEPT -A INPUT -m state --state ESTABLISHED,RELATED -j ACCEPT -A OUTPUT -m state --state ESTABLISHED,RELATED -j ACCEPT -A FORWARD -m state --state INVALID -j DROP -A INPUT -m state --state INVALID -j DROP -A OUTPUT -m state --state INVALID -j DROP -A FORWARD -s 192.168.2.192 -d 192.168.115.96/27 -m policy --pol ipsec --mode tunnel --dir in --tunnel-src 192.168.33.132 --tunnel-dst 192.168.35.254 -i eth0 -o eth2 -j test2silent-Essai -A FORWARD -s 192.168.2.199 -d 192.168.115.96/27 -m policy --pol ipsec --mode tunnel --dir in --tunnel-src 192.168.33.132 --tunnel-dst 192.168.35.254 -i eth0 -o eth2 -j test3silent-Essai -A FORWARD -s 192.168.115.96/27 -d 192.168.2.192 -m policy --pol ipsec --mode tunnel --dir out --tunnel-src 192.168.35.254 --tunnel-dst 192.168.33.132 -i eth2 -o eth0 -j Essai-test2silent -A FORWARD -s 192.168.115.96/27 -d 192.168.2.199 -m policy --pol ipsec --mode tunnel --dir out --tunnel-src 192.168.35.254 --tunnel-dst 192.168.33.132 -i eth2 -o eth0 -j Essai-test3silent -A FORWARD -s 192.168.2.192 -d 192.168.37.0/24 -m policy --pol ipsec --mode tunnel --dir in --tunnel-src 192.168.33.132 --tunnel-dst 192.168.35.254 -i eth0 -o eth1 -j test2silent-TEST -A FORWARD -s 192.168.2.199 -d 192.168.37.0/24 -m policy --pol ipsec --mode tunnel --dir in --tunnel-src 192.168.33.132 --tunnel-dst 192.168.35.254 -i eth0 -o eth1 -j test3silent-TEST -A FORWARD -s 192.168.37.0/24 -d 192.168.2.192 -m policy --pol ipsec --mode tunnel --dir out --tunnel-src 192.168.35.254 --tunnel-dst 192.168.33.132 -i eth1 -o eth0 -j TEST-test2silent -A FORWARD -s 192.168.37.0/24 -d 192.168.2.199 -m policy --pol ipsec --mode tunnel --dir out --tunnel-src 192.168.35.254 --tunnel-dst 192.168.33.132 -i eth1 -o eth0 -j TEST-test3silent -A FORWARD -s 192.168.2.192 -m policy --pol ipsec --mode tunnel --dir in --tunnel-src 192.168.33.132 --tunnel-dst 192.168.35.254 -i eth0 -o eth0 -j test2silent-INTERNET -A FORWARD -s 192.168.2.199 -m policy --pol ipsec --mode tunnel --dir in --tunnel-src 192.168.33.132 --tunnel-dst 192.168.35.254 -i eth0 -o eth0 -j test3silent-INTERNET -A FORWARD -d 192.168.2.192 -m policy --pol ipsec --mode tunnel --dir out --tunnel-src 192.168.35.254 --tunnel-dst 192.168.33.132 -i eth0 -o eth0 -j INTERNET-test2silent -A FORWARD -d 192.168.2.199 -m policy --pol ipsec --mode tunnel --dir out --tunnel-src 192.168.35.254 --tunnel-dst 192.168.33.132 -i eth0 -o eth0 -j INTERNET-test3silent -A FORWARD -s 192.168.115.96/27 -d 192.168.115.96/27 -i eth2 -o eth2 -j Essai-Essai -A FORWARD -s 192.168.115.96/27 -d 192.168.37.0/24 -i eth2 -o eth1 -j Essai-TEST -A FORWARD -s 192.168.37.0/24 -d 192.168.115.96/27 -i eth1 -o eth2 -j TEST-Essai -A FORWARD -s 192.168.37.0/24 -d 192.168.37.0/24 -i eth1 -o eth1 -j TEST-TEST -A INPUT -s 192.168.2.192 -i eth0 -j test2silent-IF -A INPUT -s 192.168.2.199 -i eth0 -j test3silent-IF -A INPUT -s 192.168.115.96/27 -i eth2 -j Essai-IF -A INPUT -s 192.168.37.0/24 -i eth1 -j TEST-IF -A OUTPUT -d 192.168.2.192 -o eth0 -j IF-test2silent -A OUTPUT -d 192.168.2.199 -o eth0 -j IF-test3silent -A OUTPUT -d 192.168.37.0/24 -o eth1 -j IF-TEST -A OUTPUT -d 192.168.115.96/27 -o eth2 -j IF-Essai -A INPUT -i eth0 -j INTERNET-IF -A OUTPUT -o eth0 -j IF-INTERNET -A FORWARD -s 192.168.115.96/27 -i eth2 -o eth0 -j Essai-INTERNET -A FORWARD -d 192.168.115.96/27 -i eth0 -o eth2 -j INTERNET-Essai -A FORWARD -s 192.168.37.0/24 -i eth1 -o eth0 -j TEST-INTERNET -A FORWARD -d 192.168.37.0/24 -i eth0 -o eth1 -j INTERNET-TEST -A FORWARD -i eth0 -o eth0 -j INTERNET-INTERNET -A INPUT -i lo -j ACCEPT -A OUTPUT -o lo -j ACCEPT -A FORWARD -j ULOG --ulog-prefix "DFT_FORWARD_DROP" -A FORWARD -j DROP -A INPUT -j ULOG --ulog-prefix "DFT_INPUT_DROP" -A INPUT -j DROP -A OUTPUT -j ULOG --ulog-prefix "DFT_OUTPUT_DROP" -A OUTPUT -j DROP