,

nftables - a mild autistic ruleset

The netfilter.org “nftables” project: https://netfilter.org/projects/nftables/

The ruleset

These rules disable most inter-LAN connectivity. The host wil talk to the gateway, DNS, NTP and DHCP servers. Other nodes might pick up broadcast traffic, but will not be able to communicate with this endpoint.