(iptables)
Line 28: Line 28:
 
* TCP/54000
 
* TCP/54000
 
** [[FastForward network protocol]]
 
** [[FastForward network protocol]]
* UDP/62010
 
** DMR+ s-master
 
 
* UDP/55001
 
* UDP/55001
 
** IPSC for external networks connection (such as SmartPTT)
 
** IPSC for external networks connection (such as SmartPTT)

Revision as of 19:56, 6 April 2021

This instruction is intended for administrators of BrandMeister DMR Servers

I am using the following set of ports for incoming connections. For your convenience, there is a set of iptables rules provided below.

Ports used by BrandMeister

iptables


iptables  -P INPUT ACCEPT
ip6tables -P INPUT ACCEPT

iptables  -P OUTPUT ACCEPT
ip6tables -P OUTPUT ACCEPT

iptables  -F; iptables  -X
ip6tables -F; ip6tables -X

iptables  -A INPUT -i lo -j ACCEPT
ip6tables -A INPUT -i lo -j ACCEPT

iptables  -t raw -F; iptables  -t raw -X
ip6tables -t raw -F; ip6tables -t raw -X

iptables  -t raw -A OUTPUT -j CT --notrack
ip6tables -t raw -A OUTPUT -j CT --notrack

iptables  -A INPUT ! -i lo -p tcp --dport 1883  -j DROP -m comment --comment "DROP mqtt"
ip6tables -A INPUT ! -i lo -p tcp --dport 1883  -j DROP -m comment --comment "DROP mqtt"
iptables  -A INPUT ! -i lo -p udp --dport 54005 -j DROP -m comment --comment "DROP sap"
ip6tables -A INPUT ! -i lo -p udp --dport 54005 -j DROP -m comment --comment "DROP sap"

This instruction is intended for administrators of BrandMeister DMR Servers

I am using the following set of ports for incoming connections. For your convenience, there is a set of iptables rules provided below.

Ports used by BrandMeister[edit]

iptables[edit]


iptables  -P INPUT ACCEPT
ip6tables -P INPUT ACCEPT

iptables  -P OUTPUT ACCEPT
ip6tables -P OUTPUT ACCEPT

iptables  -F; iptables  -X
ip6tables -F; ip6tables -X

iptables  -A INPUT -i lo -j ACCEPT
ip6tables -A INPUT -i lo -j ACCEPT

iptables  -t raw -F; iptables  -t raw -X
ip6tables -t raw -F; ip6tables -t raw -X

iptables  -t raw -A OUTPUT -j CT --notrack
ip6tables -t raw -A OUTPUT -j CT --notrack

iptables  -A INPUT ! -i lo -p tcp --dport 1883  -j DROP -m comment --comment "DROP mqtt"
ip6tables -A INPUT ! -i lo -p tcp --dport 1883  -j DROP -m comment --comment "DROP mqtt"
iptables  -A INPUT ! -i lo -p udp --dport 54005 -j DROP -m comment --comment "DROP sap"
ip6tables -A INPUT ! -i lo -p udp --dport 54005 -j DROP -m comment --comment "DROP sap"