changing prio on nf chains
This commit is contained in:
@@ -34,7 +34,7 @@ class FiregexTables(NFTableManager):
|
|||||||
"name":self.input_chain,
|
"name":self.input_chain,
|
||||||
"type":"filter",
|
"type":"filter",
|
||||||
"hook":"prerouting",
|
"hook":"prerouting",
|
||||||
"prio":-310,
|
"prio":-308,
|
||||||
"policy":"accept"
|
"policy":"accept"
|
||||||
}}},
|
}}},
|
||||||
{"add":{"chain":{ #Output chain attached after conntrack saw it
|
{"add":{"chain":{ #Output chain attached after conntrack saw it
|
||||||
@@ -43,7 +43,7 @@ class FiregexTables(NFTableManager):
|
|||||||
"name":self.output_chain,
|
"name":self.output_chain,
|
||||||
"type":"filter",
|
"type":"filter",
|
||||||
"hook":"postrouting",
|
"hook":"postrouting",
|
||||||
"prio":-310,
|
"prio":108,
|
||||||
"policy":"accept"
|
"policy":"accept"
|
||||||
}}}
|
}}}
|
||||||
],[
|
],[
|
||||||
|
|||||||
@@ -26,7 +26,7 @@ class FiregexTables(NFTableManager):
|
|||||||
"name":self.input_chain,
|
"name":self.input_chain,
|
||||||
"type":"filter",
|
"type":"filter",
|
||||||
"hook":"prerouting",
|
"hook":"prerouting",
|
||||||
"prio":-301,
|
"prio":-307,
|
||||||
"policy":"accept"
|
"policy":"accept"
|
||||||
}}},
|
}}},
|
||||||
{"add":{"chain":{
|
{"add":{"chain":{
|
||||||
@@ -35,7 +35,7 @@ class FiregexTables(NFTableManager):
|
|||||||
"name":self.output_chain,
|
"name":self.output_chain,
|
||||||
"type":"filter",
|
"type":"filter",
|
||||||
"hook":"postrouting",
|
"hook":"postrouting",
|
||||||
"prio":-301,
|
"prio":107,
|
||||||
"policy":"accept"
|
"policy":"accept"
|
||||||
}}}
|
}}}
|
||||||
],[
|
],[
|
||||||
|
|||||||
@@ -37,7 +37,7 @@ class FiregexTables(NFTableManager):
|
|||||||
"name":self.postrouting_porthijack,
|
"name":self.postrouting_porthijack,
|
||||||
"type":"filter",
|
"type":"filter",
|
||||||
"hook":"postrouting",
|
"hook":"postrouting",
|
||||||
"prio":-310,
|
"prio":110,
|
||||||
"policy":"accept"
|
"policy":"accept"
|
||||||
}}}
|
}}}
|
||||||
],[
|
],[
|
||||||
|
|||||||
Reference in New Issue
Block a user