From cd98db47293781f1132558f910435a3f9ad10a1f Mon Sep 17 00:00:00 2001 From: Max Kellermann Date: Mon, 11 Sep 2006 19:33:22 +0000 Subject: [PATCH] pod for dccp,sctp git-svn-id: svn+ssh://foo-projects.org/var/svn/ferm/trunk@682 887c3e53-ddf1-0310-8e39-e0d3fab4ed34 --- doc/ferm.pod | 20 ++++++++++++++++++++ 1 file changed, 20 insertions(+) diff --git a/doc/ferm.pod b/doc/ferm.pod index cdc02b8..38ab5fe 100644 --- a/doc/ferm.pod +++ b/doc/ferm.pod @@ -611,6 +611,16 @@ Check connection tracking information. Type "iptables -m conntrack -h" for details. +=item B + +Check DCCP (Datagram Congestion Control Protocol) specific attributes. +This module is automatically loaded when you use "protocol dccp". + + proto dccp sport 1234 dport 2345 ACCEPT; + proto dccp dccp-types (SYNCACK ACK) ACCEPT; + proto dccp dccp-types !REQUEST DROP; + proto dccp dccp-option 2 ACCEPT; + =item B Match the 6 bit DSCP field within the TOS field. @@ -759,6 +769,16 @@ keyword. L +=item B + +Check SCTP (Stream Control Transmission Protocol) specific attributes. +This module is automatically loaded when you use "protocol sctp". + + proto sctp sport 1234 dport 2345 ACCEPT; + proto sctp chunk-types only DATA:Be ACCEPT; + proto sctp chunk-types any (INIT INIT_ACK) ACCEPT; + proto sctp chunk-types !all (HEARTBEAT) ACCEPT; + =item B Checks the connection tracking state. -- 2.11.4.GIT