table inet filter { chain input { type filter hook input priority 0; policy drop; iif lo accept ct state established,related accept iif enp4s0 accept tcp dport 8443 iif enp3s0 accept } chain forward { type filter hook forward priority 0; policy drop; ct state established,related accept iif enp4s0 oif enp3s0 accept } } table ip nat { chain postrouting { type nat hook postrouting priority 100; oif enp3s0 masquerade } }