diff --git a/salt/firewall/iptables.jinja b/salt/firewall/iptables.jinja index 4d6ece25a..142f41ce8 100644 --- a/salt/firewall/iptables.jinja +++ b/salt/firewall/iptables.jinja @@ -101,10 +101,6 @@ COMMIT -A FORWARD -o sobridge -j DOCKER -A FORWARD -i sobridge ! -o sobridge -j ACCEPT -A FORWARD -i sobridge -o sobridge -j ACCEPT --A FORWARD -m conntrack --ctstate RELATED,ESTABLISHED -j ACCEPT --A FORWARD -i lo -j ACCEPT --A FORWARD -m conntrack --ctstate INVALID -j DROP --A FORWARD -j REJECT --reject-with icmp-host-prohibited -A OUTPUT -p icmp -m icmp --icmp-type 14 -j DROP {%- for rule in D2 %}