summaryrefslogtreecommitdiff
diff options
context:
space:
mode:
-rw-r--r--hosts/vidhar/ruleset.nft12
1 files changed, 3 insertions, 9 deletions
diff --git a/hosts/vidhar/ruleset.nft b/hosts/vidhar/ruleset.nft
index b73db371..b601c2be 100644
--- a/hosts/vidhar/ruleset.nft
+++ b/hosts/vidhar/ruleset.nft
@@ -129,22 +129,16 @@ table ip nat {
129 129
130 130
131 oifname dsl counter masquerade 131 oifname dsl counter masquerade
132
133
134 counter
135 } 132 }
136} 133}
137 134
138table inet mangle { 135table ip mss_clamp {
139 chain postrouting { 136 chain postrouting {
140 type filter hook postrouting priority mangle 137 type filter hook postrouting priority mangle
141 policy accept 138 policy accept
142 139
143 140
144 oifname dsl tcp flags & syn == syn counter tcp option maxseg size set rt mtu 141 oifname dsl tcp flags & (syn|rst) == syn counter tcp option maxseg size set rt mtu
145 iifname dsl tcp flags & syn == syn counter tcp option maxseg size set rt mtu 142 iifname dsl tcp flags & (syn|rst) == syn counter tcp option maxseg size set rt mtu
146
147
148 counter
149 } 143 }
150} \ No newline at end of file 144} \ No newline at end of file