Skip to content

Commit fdf4c2a

Browse files
authored
Update README.md
1 parent bb8b1cc commit fdf4c2a

File tree

1 file changed

+5
-0
lines changed

1 file changed

+5
-0
lines changed

README.md

Lines changed: 5 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -55,15 +55,20 @@ fi
5555
PORTS_TO_BLOCK="80,5555,2222"
5656
EXTERNAL_INTERFACE=$1
5757
58+
# Flush an delete custom Chains
5859
iptables -F DOCKER-USER
5960
iptables -F EXTERNAL-ACCESS-DENY
6061
iptables -X EXTERNAL-ACCESS-DENY
6162
63+
# Create a log-and-drop Chain
6264
iptables -N EXTERNAL-ACCESS-DENY
6365
iptables -A EXTERNAL-ACCESS-DENY -j LOG --log-prefix "DCKR-EXT-ACCESS-DENY:" --log-level 6
6466
iptables -A EXTERNAL-ACCESS-DENY -j DROP
6567
68+
# Block all incomming traffic for docker
6669
iptables -A DOCKER-USER -i $EXTERNAL_INTERFACE -p tcp --match multiport --dports $PORTS_TO_BLOCK -j EXTERNAL-ACCESS-DENY
70+
71+
# Restore default rule to return all the back to FORWARD-Chain
6772
iptables -A DOCKER-USER -j RETURN
6873
6974
echo "Rules created "

0 commit comments

Comments
 (0)