mirror of
https://git.sr.ht/~magic_rb/dotfiles
synced 2024-11-29 11:36:16 +01:00
Don't block outgoing DoT traffic, iifname doesn't work in output
Signed-off-by: Magic_RB <magic_rb@redalder.org>
This commit is contained in:
parent
634dafdf5a
commit
eec8f409d6
|
@ -201,7 +201,7 @@ in
|
||||||
oifname { "${wan}" } tcp dport 53 drop
|
oifname { "${wan}" } tcp dport 53 drop
|
||||||
oifname { "${wan}" } udp dport 53 drop
|
oifname { "${wan}" } udp dport 53 drop
|
||||||
# Allow DoT traffic to leave through "wan" if it comes from "lo"
|
# Allow DoT traffic to leave through "wan" if it comes from "lo"
|
||||||
iifname != { "lo" } oifname { "${wan}" } tcp dport 853 drop
|
# iifname != { "lo" } oifname { "${wan}" } tcp dport 853 drop
|
||||||
}
|
}
|
||||||
|
|
||||||
chain forward {
|
chain forward {
|
||||||
|
|
Loading…
Reference in a new issue