nftables
Differences
This shows you the differences between two versions of the page.
Both sides previous revisionPrevious revisionNext revision | Previous revision | ||
nftables [2017/07/20 08:35] – admin | nftables [2021/10/09 15:14] (current) – external edit 127.0.0.1 | ||
---|---|---|---|
Line 2: | Line 2: | ||
=====nftables - a mild autistic ruleset===== | =====nftables - a mild autistic ruleset===== | ||
The netfilter.org " | The netfilter.org " | ||
- | ~~TOC~~ | ||
====The ruleset==== | ====The ruleset==== | ||
These rules disable most inter-LAN connectivity. The host wil talk to the gateway, DNS, NTP and DHCP servers. Other nodes might pick up broadcast traffic, but will not be able to communicate with this endpoint. | These rules disable most inter-LAN connectivity. The host wil talk to the gateway, DNS, NTP and DHCP servers. Other nodes might pick up broadcast traffic, but will not be able to communicate with this endpoint. | ||
- | * Create a file (''/ | + | * Create a file with MAC addresses you want to be able to communicate with. Or dynamically generate it at boot (''/ |
####################### | ####################### | ||
# Firewall inet | # Firewall inet | ||
Line 33: | Line 32: | ||
####################### | ####################### | ||
- | # Firewall | + | # Firewall |
####################### | ####################### | ||
nftables.txt · Last modified: 2021/10/09 15:14 by 127.0.0.1