1
2
mirror of https://github.com/vimagick/dockerfiles synced 2024-06-20 13:58:42 +00:00
This commit is contained in:
kev 2015-06-29 10:07:44 +08:00
parent 3cacd333ff
commit a6b5f92bae

@ -19,6 +19,9 @@ VOLUME /etc/privoxy
EXPOSE 8118
CMD iptables -A INPUT -s 127.0.0.1 -d 127.0.0.1 -j REJECT \
&& iptables -A INPUT -s $(ip route | grep default | awk '{print $3}') \
-d $(ip route | grep default | awk '{print $3}') \
-j REJECT \
&& iptables -t filter -P OUTPUT DROP \
&& iptables -t filter -A OUTPUT -p udp --dport 53 -j ACCEPT \
&& iptables -t filter -A OUTPUT -p tcp \