Put in earplugs

This commit is contained in:
nik gaffney 2024-01-24 15:52:06 +01:00
parent 7840392f0d
commit 22b47669f3
Signed by: nik
GPG key ID: 989F5E6EDB478160
2 changed files with 10 additions and 1 deletions

View file

@ -241,6 +241,8 @@ wireguard
#+BEGIN_SRC scheme
-A INPUT -p udp -m udp --dport 51820 -j ACCEPT
-A INPUT -i wg0 -m state --state ESTABLISHED,RELATED -j ACCEPT
-A FORWARD -i wg0 -j ACCEPT
-A POSTROUTING -o wlp1s0 -j MASQUERADE
#+end_src
#+BEGIN_SRC scheme
@ -265,9 +267,12 @@ SMB
-A INPUT -m state --state NEW -m tcp -p tcp -s fd24:609a:6c18::/64 --dport 445 -j ACCEPT
#+end_src
wireguard
#+BEGIN_SRC scheme
-A INPUT -p udp -m udp --dport 51820 -j ACCEPT
-A INPUT -i wg0 -m state --state ESTABLISHED,RELATED -j ACCEPT
-A FORWARD -i wg0 -j ACCEPT
-A POSTROUTING -o wlp1s0 -j MASQUERADE
#+end_src
#+BEGIN_SRC scheme

View file

@ -1,6 +1,6 @@
;; -*- mode: scheme; coding: utf-8; -*-
;;
;; tangled from framework13-system.org on 2024-01-24 15:26:24+01:00)
;; tangled from framework13-system.org on 2024-01-24 15:51:00+01:00)
(use-modules (gnu)
(gnu packages)
@ -141,6 +141,8 @@
-A INPUT -p udp -m udp --dport 51820 -j ACCEPT
-A INPUT -i wg0 -m state --state ESTABLISHED,RELATED -j ACCEPT
-A FORWARD -i wg0 -j ACCEPT
-A POSTROUTING -o wlp1s0 -j MASQUERADE
-A INPUT -j REJECT --reject-with icmp-port-unreachable
-A INPUT -m conntrack --ctstate INVALID -j DROP
@ -162,6 +164,8 @@ COMMIT
-A INPUT -p udp -m udp --dport 51820 -j ACCEPT
-A INPUT -i wg0 -m state --state ESTABLISHED,RELATED -j ACCEPT
-A FORWARD -i wg0 -j ACCEPT
-A POSTROUTING -o wlp1s0 -j MASQUERADE
-A INPUT -j REJECT --reject-with icmp6-port-unreachable
-A INPUT -m conntrack --ctstate INVALID -j DROP