From eb5c563fb01c662ec0b1814563ef859b4f3db21c Mon Sep 17 00:00:00 2001 From: Pawel Krawczyk Date: Mon, 24 Nov 2014 22:44:55 +0000 Subject: [PATCH] cosmetic --- firewall.user | 6 +++--- 1 file changed, 3 insertions(+), 3 deletions(-) diff --git a/firewall.user b/firewall.user index ea59cbe..ab5cf5c 100644 --- a/firewall.user +++ b/firewall.user @@ -37,10 +37,10 @@ fi if ! iptables -L ${blocklist_chain_name}; then iptables -N ${blocklist_chain_name}; fi # inject references to blocklist in the beginning of input and forward chains -if ! iptables -L input_rule |grep -q ${blocklist_chain_name}; then +if ! iptables -L input_rule | grep -q ${blocklist_chain_name}; then iptables -I input_rule 1 -m state --state NEW,RELATED -j ${blocklist_chain_name} fi -if ! iptables -L forwarding_rule |grep -q ${blocklist_chain_name}; then +if ! iptables -L forwarding_rule | grep -q ${blocklist_chain_name}; then iptables -I forwarding_rule 1 -m state --state NEW,RELATED -j ${blocklist_chain_name} fi @@ -58,7 +58,7 @@ for url in $urls; do set_name=$(basename $url) curl -s -k "$url" >"$tmp" sort -u <"$tmp" | egrep "^[0-9]{1,3}\.[0-9]{1,3}\.[0-9]{1,3}\.[0-9]{1,3}$" >"$tmp2" - ipset create ${set_name} hash:net + ipset -! create ${set_name} hash:net while read line; do ipset -! add ${set_name} "$line" done <"$tmp2"