Delete drop rules for output since it is the default policy now

This commit is contained in:
Tristan PILAT 2020-11-18 17:47:54 +01:00
parent 550af6e21f
commit 520b8893f0

View file

@ -329,10 +329,7 @@ then
fi
fi
## Eventually, we drop the output traffic
$NFT add rule inet minifirewall minifirewall_output ct state established,related accept
$NFT add rule inet minifirewall minifirewall_output meta l4proto udp drop
$NFT add rule inet minifirewall minifirewall_output meta l4proto tcp drop
trap - INT TERM EXIT