From 59c4f4473e2e99c9fe5808e819d76de9eab474ff Mon Sep 17 00:00:00 2001 From: FusionPBX Date: Thu, 23 Mar 2017 14:51:08 -0600 Subject: [PATCH] Update iptables.sh Adding IPtables DSCP QoS tagging - Thanks Brian K West for this suggestion. --- debian/resources/iptables.sh | 3 +++ 1 file changed, 3 insertions(+) diff --git a/debian/resources/iptables.sh b/debian/resources/iptables.sh index ff5afc0..5e04390 100755 --- a/debian/resources/iptables.sh +++ b/debian/resources/iptables.sh @@ -34,6 +34,9 @@ iptables -A INPUT -p udp --dport 5080:5081 -j ACCEPT iptables -A INPUT -p udp --dport 16384:32768 -j ACCEPT iptables -A INPUT -p icmp --icmp-type echo-request -j ACCEPT iptables -A INPUT -p udp --dport 1194 -j ACCEPT +iptables -t mangle -A OUTPUT -p udp -m udp --sport 16384:32768 -j DSCP --set-dscp 46 +iptables -t mangle -A OUTPUT -p udp -m udp --sport 5060:5081 -j DSCP --set-dscp 26 +iptables -t mangle -A OUTPUT -p tcp -m tcp --sport 5060:5081 -j DSCP --set-dscp 26 iptables -P INPUT DROP iptables -P FORWARD DROP iptables -P OUTPUT ACCEPT