summaryrefslogtreecommitdiff
diff options
context:
space:
mode:
authorGaurav Sinha <gaurav.sinha@vyatta.com>2012-08-29 17:02:08 -0700
committerGaurav Sinha <gaurav.sinha@vyatta.com>2012-08-29 17:02:08 -0700
commit40fc41bc51e47decd858f9972334a4959e1b8a60 (patch)
tree7b223b4caac15c1bce3c93b4a12de92a717914e9
parent2bbafe74527d51904015861b138fd42cd7864d09 (diff)
downloadvyatta-cfg-firewall-40fc41bc51e47decd858f9972334a4959e1b8a60.tar.gz
vyatta-cfg-firewall-40fc41bc51e47decd858f9972334a4959e1b8a60.zip
fix 8200, don't allow shim6 in allowed list of ipv4 protocols for firewall
-rw-r--r--templates/firewall/name/node.tag/rule/node.tag/protocol/node.def2
1 files changed, 1 insertions, 1 deletions
diff --git a/templates/firewall/name/node.tag/rule/node.tag/protocol/node.def b/templates/firewall/name/node.tag/rule/node.tag/protocol/node.def
index 6e0e9a6..09bc06a 100644
--- a/templates/firewall/name/node.tag/rule/node.tag/protocol/node.def
+++ b/templates/firewall/name/node.tag/rule/node.tag/protocol/node.def
@@ -17,6 +17,6 @@ syntax:expression: exec "if [ -n \"`/opt/vyatta/sbin/vyatta-validate-type protoc
# Provide some help for command completion. Doesn't return negated
# values or protocol numbers
allowed:
- protos=`cat /etc/protocols | sed -e '/^#.*/d' | awk '{ print $1 }' | grep -v 'v6'`
+ protos=`cat /etc/protocols | sed -e '/^#.*/d' | awk '{ print $1 }' | grep -v '6'`
protos="all $protos tcp_udp"
echo -n $protos