From 33bcd102780a35b720ad0e60a83ce0d9f4dc4aee Mon Sep 17 00:00:00 2001 From: ChiefGyk Date: Wed, 29 Jun 2016 11:01:53 -0400 Subject: [PATCH] fixing persistence with ipset --- blacklist | 3 +-- install.sh | 4 ++-- 2 files changed, 3 insertions(+), 4 deletions(-) diff --git a/blacklist b/blacklist index 287f9071..095b9ac7 100644 --- a/blacklist +++ b/blacklist @@ -30,6 +30,5 @@ do ipset add blacklist $ip done -# save IPtable rules -ipset save blacklist > /etc/ipset/blacklist +ipset save > /etc/ipset.up.rules iptables-save > /etc/iptables.up.rules \ No newline at end of file diff --git a/install.sh b/install.sh index 6af563b9..0adc63e9 100755 --- a/install.sh +++ b/install.sh @@ -21,6 +21,6 @@ cp blacklist /etc/cron.daily/blacklist chmod a+x /etc/cron.daily/blacklist time /etc/cron.daily/blacklist iptables-save > /etc/iptables.up.rules -sed -e "\$apost up ipset restore < /etc/ipset/blacklist" /etc/network/interfaces -sed -e "\$apost up iptables-restore < /etc/iptables.up.rules" /etc/network/interfaces +sed -i -e "\$apre-up ipset restore < /etc/ipset.up.rules" /etc/network/interfaces +sed -i -e "\$apre-up iptables-restore < /etc/iptables.up.rules" /etc/network/interfaces echo "Blacklist has been installed. It will run daily automatically."