#!/bin/bash
#

## Firewall Script
#  01-07-26  by Erik Wegner
#  http-up <ExternalInterface>
#

EXT=$1  

if test -z $1 ; then
	echo "http-up <ExternalInterface>"
	echo "e.g.: http-up ippp0"
	exit 2
fi

# Pfad zu IPTables
if test -z $IPTABLES ; then
	IPTABLES=/usr/sbin/iptables
fi

## Ports
#  Nicht-privilegierte = 1024-65535
P_HIGH=1024:65535
P_ICQ=4000

echo -e "\n#ICQ $EXT [$P_ICQ] <-> [$P_HIGH]"

echo "$IPTABLES -A OUTPUT -p UDP -o $EXT \\
	--sport $P_HIGH \\
	--dport $P_ICQ -j ACCEPT"

echo "$IPTABLES -A INPUT -p UDP -i $EXT \\
	--sport $P_ICQ \\
	--dport $P_HIGH ! --syn -j ACCEPT"

#echo "$IPTABLES -A INPUT -p TCP --dport $P_ICQ --syn -j my_drop"
#echo "$IPTABLES -A FORWARD -o $EXT -p udp -d icq.mirabilis.com --dport 4000 -j ACCEPT" 
