iptables question.

view story

http://www.unix.com – I am setting up a new squid daemon to run on my server. I want to make sure that everyone inside my network can access squid but I want to make sure everyone on the internet is blocked. eth0 is connected to my internal LAN via: eth1 is connected to the internet via: Squid listens on port 3124 So far I have the following script for my iptables. iptables -F iptables -t nat -F iptables -X iptables -P FORWARD DROP iptables -P INPUT DROP iptables -P OUTPUT ACCEPT iptables -A INPUT -p tcp --dport 3124 -j ACCEPT iptables -A INPUT - (HowTos)