From: Faiyaz Ahmed Date: Fri, 19 Sep 2008 19:07:15 +0000 (+0000) Subject: No longer needed; Internet2 rules are maintained by iptables/NodeManager X-Git-Tag: nodeconfig-4.3-2~24 X-Git-Url: http://git.onelab.eu/?p=nodeconfig.git;a=commitdiff_plain;h=d4ee7f5de957c06ac5fa021b5100cbd1c03c9a95 No longer needed; Internet2 rules are maintained by iptables/NodeManager --- diff --git a/PlanetLabConf/iptables-Internet2 b/PlanetLabConf/iptables-Internet2 deleted file mode 100644 index c1982cc..0000000 --- a/PlanetLabConf/iptables-Internet2 +++ /dev/null @@ -1,28 +0,0 @@ -# Iptables rules for Internet2 (exempt) nodes. Nodes sending traffic -# to any of the IPs in the Internet2 ipset (hash) will end up the the -# slice's exempt queue. This supersedes the default config that lives -# in svn/iptables/planetlab-config - -*filter -:INPUT ACCEPT -:FORWARD ACCEPT -:OUTPUT ACCEPT -:BLACKLIST - -:LOGDROP - --A OUTPUT -j BLACKLIST --A LOGDROP -j LOG --A LOGDROP -j DROP -COMMIT - -*mangle -:PREROUTING ACCEPT -:INPUT ACCEPT -:FORWARD ACCEPT -:OUTPUT ACCEPT -:POSTROUTING ACCEPT --A INPUT -j MARK --copy-xid 0x0 --A POSTROUTING -j MARK --copy-xid 0x0 --A POSTROUTING -j CLASSIFY --set-class 0001:1000 --add-mark --A POSTROUTING -m set --set Internet2 dst -j CLASSIFY --set-class 0001:2000 --add-mark --A POSTROUTING -o eth0 -j ULOG --ulog-cprange 54 --ulog-qthreshold 16 -COMMIT