Clean up dead code
[project/firewall3.git] / zones.c
diff --git a/zones.c b/zones.c
index 982424930a365887fe657b4c06c2d817ffed3d57..fe507b0d82b7fc784aeb27ab057a93739e3e0e86 100644 (file)
--- a/zones.c
+++ b/zones.c
@@ -477,11 +477,13 @@ print_zone_rule(struct fw3_ipt_handle *handle, struct fw3_state *state,
                {
                        r = fw3_ipt_rule_new(handle);
                        fw3_ipt_rule_extra(r, "-m conntrack --ctstate DNAT");
+                       fw3_ipt_rule_comment(r, "Accept port redirections");
                        fw3_ipt_rule_target(r, fw3_flag_names[FW3_FLAG_ACCEPT]);
                        fw3_ipt_rule_append(r, "zone_%s_input", zone->name);
 
                        r = fw3_ipt_rule_new(handle);
                        fw3_ipt_rule_extra(r, "-m conntrack --ctstate DNAT");
+                       fw3_ipt_rule_comment(r, "Accept port forwards");
                        fw3_ipt_rule_target(r, fw3_flag_names[FW3_FLAG_ACCEPT]);
                        fw3_ipt_rule_append(r, "zone_%s_forward", zone->name);
                }