delete the default iptable rule

This commit is contained in:
Edison Su 2011-08-03 13:39:13 -07:00
parent e3d30c6be6
commit 66fe12910c

View File

@ -533,6 +533,8 @@ class firewallConfigAgent(firewallConfigBase):
self.ports = "22 16509 5900:6100 49152:49216".split()
if syscfg.env.distribution.getVersion() == "CentOS":
self.rules = ["-D FORWARD -j RH-Firewall-1-INPUT"]
else:
self.rules = ["-D FORWARD -j REJECT --reject-with icmp-host-prohibited"]
class cloudAgentConfig(serviceCfgBase):