From e497c8fc331b9738e4b55dc6d083c20a0e6143a6 Mon Sep 17 00:00:00 2001 From: Philipp Borgers Date: Sat, 3 Nov 2018 17:05:56 +0100 Subject: [PATCH] firewall-defaults: remove advanced section from firewall configuration Some of the options are now part of the defaults section. Some are configured in /etc/sysctl.conf. The openwrt defaults are sane. We use these from now on. Addresses: https://github.com/freifunk-berlin/firmware/issues/465 --- .../uci-defaults/freifunk-berlin-firewall-defaults | 5 ----- 1 file changed, 5 deletions(-) diff --git a/defaults/freifunk-berlin-firewall-defaults/uci-defaults/freifunk-berlin-firewall-defaults b/defaults/freifunk-berlin-firewall-defaults/uci-defaults/freifunk-berlin-firewall-defaults index 5bbfdf84..f6b2cf46 100644 --- a/defaults/freifunk-berlin-firewall-defaults/uci-defaults/freifunk-berlin-firewall-defaults +++ b/defaults/freifunk-berlin-firewall-defaults/uci-defaults/freifunk-berlin-firewall-defaults @@ -118,11 +118,6 @@ uci set firewall.$RULE.proto=tcp uci set firewall.$RULE.target=ACCEPT uci set firewall.$RULE.src=freifunk -ADVANCED="$(uci add firewall advanced)" -uci set firewall.$ADVANCED.tcp_westwood=1 -uci set firewall.$ADVANCED.tcp_ecn=0 -uci set firewall.$ADVANCED.ip_conntrack_max=8192 - FORWARDING="$(uci add firewall forwarding)" uci set firewall.$FORWARDING.dest=wan uci set firewall.$FORWARDING.src=freifunk