# # # mini firewall # # save file as firewall in /root directory # put sh /root/firewall in /etc/rc.local # # # allows = 24.208.165.168 , 68.22.89.198 # dns servers = 18.70.0.160 ipfw add 10 allow tcp from 24.208.165.168 to any 22 ipfw add 20 allow tcp from 68.22.89.198 to any 22 ipfw add 50 allow tcp from 18.70.0.160 to any 53 ipfw add 50 allow udp from 18.70.0.160 to any 53 ipfw add 10000 deny tcp from any to me 22 ipfw add 12000 deny udp from any to me 53 ipfw add 15000 deny tcp from any to me ipfw add 15000 deny udp from any to me #### firewall II ipfw add 10 allow tcp from 68.250.183.3 to any 22 ipfw add 10 allow tcp from me to any 22 ipfw add 20 allow tcp from 68.250.183.3 to any 3389 ipfw add 30 allow tcp from 192.168.0.0/24 to any 22 ipfw add 50 allow tcp from 24.95.80.41 to any 53 ipfw add 50 allow udp from 24.95.80.41 to any 53 ipfw add 60 allow tcp from 24.95.80.45 to any 53 ipfw add 60 allow udp from 24.95.80.45 to any 53 ipfw add 10000 deny tcp from any to me 22 ipfw add 12000 deny udp from any to me 53 ipfw add 15000 deny tcp from any to me ipfw add 15000 deny udp from any to me ## edited firewall for use ipfw add 10 allow tcp from me to any ipfw add 10 allow udp from me to any ipfw add 40 allow tcp from 68.250.183.3 to any 3389 via dc0 ipfw add 50 allow tcp from 24.95.80.41 to any 53 via dc0 ipfw add 50 allow udp from 24.95.80.41 to any 53 via dc0 ipfw add 50 allow tcp from 24.95.80.45 to any 53 via dc0 ipfw add 50 allow udp from 24.95.80.45 to any 53 via dc0 ipfw add 100 deny tcp from any to me 22 via dc0 ipfw add 100 deny udp from any to me 53 via dc0 ipfw add 200 deny tcp from any to me via dc0 ipfw add 200 deny udp from any to me via dc0