From 740f758619d3c9172e74f3b5076d124254a1d1bf Mon Sep 17 00:00:00 2001 From: Gregor Kleen Date: Thu, 16 Dec 2021 14:28:22 +0100 Subject: surtr: nftables... --- hosts/surtr/ruleset.nft | 4 ++-- 1 file changed, 2 insertions(+), 2 deletions(-) diff --git a/hosts/surtr/ruleset.nft b/hosts/surtr/ruleset.nft index b57434a6..9a1bf95a 100644 --- a/hosts/surtr/ruleset.nft +++ b/hosts/surtr/ruleset.nft @@ -44,8 +44,8 @@ table inet filter { iifname lo counter accept - meta l4proto $icmp_protos iifname yggdrasil limit name lim_icmp counter drop - meta l4proto $icmp_protos iifname yggdrasil counter accept + meta l4proto $icmp_protos iifname yggdrasil oifname ens3 limit name lim_icmp counter drop + meta l4proto $icmp_protos iifname yggdrasil oifname ens3 counter accept meta l4proto $icmp_protos ct state {established, related} limit name lim_icmp counter drop meta l4proto $icmp_protos ct state {established, related} counter accept -- cgit v1.2.3