Skip to content

Instantly share code, notes, and snippets.

@alekc
Last active November 30, 2018 15:12
Show Gist options
  • Save alekc/10f034d43a08752df72e531f5a0aaf5e to your computer and use it in GitHub Desktop.
Save alekc/10f034d43a08752df72e531f5a0aaf5e to your computer and use it in GitHub Desktop.
Firehol cheatsheet
#Define custom service directly inside interface block
server custom grayrests "tcp/9000" any accept
#Common noise ports
server custom plex "tcp/32412" any drop
server custom smb "tcp/445" any drop
#Whitelist an ip address(es)
server all accept src "8.8.8.8,1.1.1.1"
#Docker integration
docker_bridge docker_gwbridge 172.18.0.0/16
docker_bridge docker0 172.17.0.0/16
interface docker_gwbridge,docker0 dockerContainers
policy accept
#Restrict interface to be ipv4 only
interface4 eth0 wan
xxxx
#Drop all requests to broadcasting network
ipv4 server all drop dst "62.210.202.255"
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment