1
0
Fork 0

modules/clerie-firewall: enable connection tracking

This commit is contained in:
clerie 2023-02-03 00:49:56 +01:00
parent f05567cbce
commit 7f84597b56
1 changed files with 3 additions and 0 deletions

View File

@ -24,6 +24,9 @@ let
ip46tables -N forward-filter
# Allow packets from existing connections
ip46tables -A forward-filter -m conntrack --ctstate ESTABLISHED,RELATED -j ACCEPT
${cfg.extraForwardFilterCommands}
ip46tables -A FORWARD -j forward-filter