
#Rules for FORWARD

#vpn_intranet (acl 1)



#vpn_intranet (acl 1)
-A reseau6-INTRANET -p tcp --dport 80 --sport 1024:65535 -d 192.168.3.0/24 -m state --state NEW --syn -j NFQUEUE --queue-num 0  # 1 1


-A INTERNET-reseau6 -j ULOG --ulog-prefix "INTERNET-reseau6"
-A INTERNET-reseau6 -j DROP

-A INTERNET-INTRANET -j ULOG --ulog-prefix "INTERNET-INTRANET"
-A INTERNET-INTRANET -j DROP

-A INTERNET-DMZ -j ULOG --ulog-prefix "INTERNET-DMZ"
-A INTERNET-DMZ -j DROP

-A reseau6-INTERNET -j ULOG --ulog-prefix "reseau6-INTERNET"
-A reseau6-INTERNET -j DROP

-A reseau6-INTRANET -j ULOG --ulog-prefix "reseau6-INTRANET"
-A reseau6-INTRANET -j DROP

-A reseau6-DMZ -j ULOG --ulog-prefix "reseau6-DMZ"
-A reseau6-DMZ -j DROP

-A INTRANET-INTERNET -j ULOG --ulog-prefix "INTRANET-INTERNET"
-A INTRANET-INTERNET -j DROP

-A INTRANET-reseau6 -j ULOG --ulog-prefix "INTRANET-reseau6"
-A INTRANET-reseau6 -j DROP

-A INTRANET-DMZ -j ULOG --ulog-prefix "INTRANET-DMZ"
-A INTRANET-DMZ -j DROP

-A DMZ-INTERNET -j ULOG --ulog-prefix "DMZ-INTERNET"
-A DMZ-INTERNET -j DROP

-A DMZ-reseau6 -j ULOG --ulog-prefix "DMZ-reseau6"
-A DMZ-reseau6 -j DROP

-A DMZ-INTRANET -j ULOG --ulog-prefix "DMZ-INTRANET"
-A DMZ-INTRANET -j DROP

