From aefbe2d5a0cd10daa555433b14230ede07225372 Mon Sep 17 00:00:00 2001 From: Gregor Kleen Date: Thu, 5 May 2022 19:13:41 +0200 Subject: surtr: ... --- hosts/surtr/ruleset.nft | 10 +++++++++- 1 file changed, 9 insertions(+), 1 deletion(-) (limited to 'hosts/surtr/ruleset.nft') diff --git a/hosts/surtr/ruleset.nft b/hosts/surtr/ruleset.nft index f5ad5769..b9f83487 100644 --- a/hosts/surtr/ruleset.nft +++ b/hosts/surtr/ruleset.nft @@ -80,6 +80,8 @@ table inet filter { counter turn-rx {} counter smtp-rx {} counter submissions-rx {} + counter imap-rx {} + counter managesieve-rx {} counter established-rx {} @@ -105,6 +107,8 @@ table inet filter { counter turn-tx {} counter smtp-tx {} counter submissions-tx {} + counter imap-tx {} + counter managesieve-tx {} counter tx {} @@ -170,8 +174,10 @@ table inet filter { udp dport {3478, 5349} counter name stun-rx accept udp dport 49000-50000 counter name turn-rx accept - # tcp dport 25 counter name smtp-rx accept + tcp dport 25 counter name smtp-rx accept tcp dport 465 counter name submissions-rx accept + tcp dport 993 counter name imaps-rx accept + tcp dport 4190 counter name managesieve-rx accept ct state {established, related} counter name established-rx accept @@ -214,6 +220,8 @@ table inet filter { tcp sport 25 counter name smtp-tx accept tcp sport 465 counter name submissions-tx accept + tcp sport 993 counter name imaps-tx accept + tcp sport 4190 counter name managesieve-tx accept counter name tx -- cgit v1.2.3