summaryrefslogtreecommitdiff
path: root/etc/nftables.conf
blob: 8acb952375ebb99adb3706089c2f42a53859f141 (plain)
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
table inet filter {
	chain input {
		type filter hook input priority 0; policy drop;
		iif lo accept
		ct state established,related accept
		iif enp4s0 accept
		tcp dport 8443 iif enp3s0 accept
	}
	chain forward {
		type filter hook forward priority 0; policy drop;
		ct state established,related accept
		iif enp4s0 oif enp3s0 accept
	}
}

table ip nat {
	chain postrouting {
		type nat hook postrouting priority 100;
		oif enp3s0 masquerade
	}
}