aboutsummaryrefslogtreecommitdiffstats
path: root/main/nftables/nftables.initd
Commit message (Collapse)AuthorAgeFilesLines
* main/nftables: add checkconfig to extra_commandsJakub Jirutka2020-01-061-1/+2
|
* main/nftables: fix init script's checkconfig to actually run checkJakub Jirutka2020-01-041-3/+2
|
* main/nftables: change default rules_file location and save_on_stopJakub Jirutka2020-01-041-2/+2
|
* main/nftables: fix wrong variable in runscriptJakub Jirutka2018-04-011-1/+1
|
* main/nftables: change default save location to /etc/firewall.nftJakub Jirutka2018-04-011-1/+1
| | | | | | | | | | This is a configuration and so should be stored in /etc. Also nftables format is very well suited for hand-written firewall configuration, not just for dumping current rules managed manually by ntf tool or generated by some shell script. However, to be consistent with iptables package, I kept save_on_stop enabled by default.
* main/nftables: add support for enabling forwarding to runscriptJakub Jirutka2018-04-011-1/+22
|
* main/nftables: improve runscript, fix code-style, rename varsJakub Jirutka2018-04-011-54/+61
|
* main/nftables: fix wrong return code in runscript's save() funcJakub Jirutka2018-04-011-1/+1
|
* main/nftables: Updating init scriptBen Allen2016-01-191-44/+11
| | | | | | | - Tidy up panic function to a single inet (combined ip and ipv6) table. - Use policy drop for each chain in the panic function instead of a drop rule. This way a user could manually add in rules later allowing explicit access. - Instead of a clear function, include 'flush ruleset' in the output of the save function. This way loading the saved rulesets is fully atomic, instead of two commands. - Stop is the only function that needs to be able to flush ruleset, so run 'nft flush ruleset' directly, and remove the clear function.
* main/nftables: Update init scriptBen Allen2016-01-111-105/+87
| | | | Updating main/nftables init script. Based on the newer Gentoo init script: https://gitweb.gentoo.org/repo/gentoo.git/tree/net-firewall/nftables/files/nftables.init-r2. Merged nftables.sh from Gentoo's version into the init script itself, and removed the legacy functionality. Adding descriptions for each action as well.
* main/nftables: moved from testingEivind Uggedal2015-09-151-0/+150
Since linux 3.18 the elaborate clear logic is no longer needed. Replace it with the safer: nft flush ruleset