summaryrefslogtreecommitdiffstats
diff options
context:
space:
mode:
-rw-r--r--awall/modules/nat.lua10
1 files changed, 5 insertions, 5 deletions
diff --git a/awall/modules/nat.lua b/awall/modules/nat.lua
index 4327f4c..7c632f0 100644
--- a/awall/modules/nat.lua
+++ b/awall/modules/nat.lua
@@ -76,8 +76,8 @@ end
classmap = {dnat=DNATRule, snat=SNATRule}
-defrules = {}
-
--- TODO configuration of _nat ipset via config.json
---defrules = {{family='ip4', table='nat', chain='POSTROUTING',
--- opts='-m set --match-set _nat src ! --match-set _nat dst -j MASQUERADE'}}
+-- TODO configuration of the ipset via JSON config
+defrules = {{family='ip4', table='nat', chain='POSTROUTING',
+ opts='-m set --match-set awall-masquerade src -j awall-masquerade'},
+ {family='ip4', table='nat', chain='awall-masquerade',
+ opts='-m set ! --match-set awall-masquerade dst -j MASQUERADE'}}