This commit is contained in:
2024-08-08 11:11:37 -04:00
commit 0236cddce7
9 changed files with 174 additions and 0 deletions

18
templates/nftables.conf.j2 Executable file
View File

@@ -0,0 +1,18 @@
#!/usr/sbin/nft -f
flush ruleset
table inet filter {
chain input {
type filter hook input priority filter;
{% for port in open_ports %}
iifname "{{ port.interface }}" {{ port.protocol }} dport {{ port.port }} accept;
{% endfor %}
}
chain forward {
type filter hook forward priority filter;
}
chain output {
type filter hook output priority filter;
}
}