From: Jiri J. <jja...@re...> - 2013-10-07 11:32:38
|
The remaining rule is still specific enough to not interfere with tests. Signed-off-by: Jiri Jaburek <jja...@re...> --- audit-test/netfilebt/run.conf | 3 +-- 1 file changed, 1 insertion(+), 2 deletions(-) diff --git a/audit-test/netfilebt/run.conf b/audit-test/netfilebt/run.conf index efd9ac2..93b9d93 100644 --- a/audit-test/netfilebt/run.conf +++ b/audit-test/netfilebt/run.conf @@ -527,8 +527,7 @@ prepend_cleanup 'network_cleanup' function ebtaudit_setup { ebtables -A INPUT -p arp -j ACCEPT -ebtables -A INPUT -p ipv6 --ip6-protocol ipv6-icmp --ip6-icmp-type neighbour-solicitation -j ACCEPT -ebtables -A INPUT -p ipv6 --ip6-protocol ipv6-icmp --ip6-icmp-type neighbour-advertisement -j ACCEPT +ebtables -A INPUT -p ipv6 --ip6-protocol ipv6-icmp -j ACCEPT ebtables -N AUDIT_DROP ebtables -A AUDIT_DROP -j AUDIT --audit-type DROP -- 1.8.3.1 |