From: rtrimana Date: Thu, 21 Dec 2017 19:51:46 +0000 (-0800) Subject: Removing forward rules on router for SSH traffic entirely after Sentinel bootstrap... X-Git-Url: http://plrg.eecs.uci.edu/git/?p=iot2.git;a=commitdiff_plain;h=042f511cbc02e14fe8229b493558ef828e413bea;hp=926e568ff384b607bd1ccc9539a93bf93aaaa473 Removing forward rules on router for SSH traffic entirely after Sentinel bootstrap sequence --- diff --git a/iotjava/iotruntime/master/RouterConfig.java b/iotjava/iotruntime/master/RouterConfig.java index e6e0413..48bb8f6 100644 --- a/iotjava/iotruntime/master/RouterConfig.java +++ b/iotjava/iotruntime/master/RouterConfig.java @@ -648,8 +648,8 @@ public final class RouterConfig { strConfigHost + " -d " + strMonitorHost + " -p tcp --dport ssh"); pwConfig.println("-A OUTPUT -j ACCEPT -s " + strConfigHost + " -d " + strMonitorHost + " -p tcp --sport ssh"); - pwConfig.println("-A FORWARD -j ACCEPT -p tcp --dport ssh"); - pwConfig.println("-A FORWARD -j ACCEPT -p tcp --sport ssh"); + //pwConfig.println("-A FORWARD -j ACCEPT -p tcp --dport ssh"); + //pwConfig.println("-A FORWARD -j ACCEPT -p tcp --sport ssh"); }