(→iptables) |
|||
Line 28: | Line 28: | ||
* TCP/54000 | * TCP/54000 | ||
** [[FastForward network protocol]] | ** [[FastForward network protocol]] | ||
− | |||
− | |||
* UDP/55001 | * UDP/55001 | ||
** IPSC for external networks connection (such as SmartPTT) | ** IPSC for external networks connection (such as SmartPTT) |
This instruction is intended for administrators of BrandMeister DMR Servers
I am using the following set of ports for incoming connections. For your convenience, there is a set of iptables rules provided below.
- iptables -P INPUT ACCEPT
- ip6tables -P INPUT ACCEPT
- iptables -P OUTPUT ACCEPT
- ip6tables -P OUTPUT ACCEPT
- iptables -F; iptables -X
- ip6tables -F; ip6tables -X
- iptables -A INPUT -i lo -j ACCEPT
- ip6tables -A INPUT -i lo -j ACCEPT
- iptables -t raw -F; iptables -t raw -X
- ip6tables -t raw -F; ip6tables -t raw -X
- iptables -t raw -A OUTPUT -j CT --notrack
- ip6tables -t raw -A OUTPUT -j CT --notrack
- iptables -A INPUT ! -i lo -p tcp --dport 1883 -j DROP -m comment --comment "DROP mqtt"
- ip6tables -A INPUT ! -i lo -p tcp --dport 1883 -j DROP -m comment --comment "DROP mqtt"
- iptables -A INPUT ! -i lo -p udp --dport 54005 -j DROP -m comment --comment "DROP sap"
- ip6tables -A INPUT ! -i lo -p udp --dport 54005 -j DROP -m comment --comment "DROP sap"
This instruction is intended for administrators of BrandMeister DMR Servers
I am using the following set of ports for incoming connections. For your convenience, there is a set of iptables rules provided below.
- iptables -P INPUT ACCEPT
- ip6tables -P INPUT ACCEPT
- iptables -P OUTPUT ACCEPT
- ip6tables -P OUTPUT ACCEPT
- iptables -F; iptables -X
- ip6tables -F; ip6tables -X
- iptables -A INPUT -i lo -j ACCEPT
- ip6tables -A INPUT -i lo -j ACCEPT
- iptables -t raw -F; iptables -t raw -X
- ip6tables -t raw -F; ip6tables -t raw -X
- iptables -t raw -A OUTPUT -j CT --notrack
- ip6tables -t raw -A OUTPUT -j CT --notrack
- iptables -A INPUT ! -i lo -p tcp --dport 1883 -j DROP -m comment --comment "DROP mqtt"
- ip6tables -A INPUT ! -i lo -p tcp --dport 1883 -j DROP -m comment --comment "DROP mqtt"
- iptables -A INPUT ! -i lo -p udp --dport 54005 -j DROP -m comment --comment "DROP sap"
- ip6tables -A INPUT ! -i lo -p udp --dport 54005 -j DROP -m comment --comment "DROP sap"