for j in $FW_ALLOW_INCOMING_HIGHPORTS_TCP; do case "$j" in no) ;; yes) for CHAIN in input_int input_dmz input_ext; do $LAC $IPTABLES -A $CHAIN -j LOG ${LOG}-ACCEPT -p tcp --dport 1024:65535 --syn $LAA $IPTABLES -A $CHAIN -j LOG ${LOG}-ACCEPT -p tcp --dport 1024:65535 $IPTABLES -A $CHAIN -j "$ACCEPT" -m state --state NEW,ESTABLISHED,RELATED -p done DONE_ALL=yes