summaryrefslogtreecommitdiff
path: root/etc/nftables.conf
diff options
context:
space:
mode:
authorXiao Pan <xyz@flylightning.xyz>2025-08-28 14:39:01 +0000
committerXiao Pan <xyz@flylightning.xyz>2025-08-28 14:39:01 +0000
commitb507abd30eed0010b637b674643730023277a58c (patch)
tree906b92c1e9af85b039e7eb5f80b52d2d77efaa36 /etc/nftables.conf
parent145ad1f234139d3d359173922135bdc770602a91 (diff)
wg to ba then swgp forward to ib or caba
Diffstat (limited to 'etc/nftables.conf')
-rw-r--r--etc/nftables.conf5
1 files changed, 5 insertions, 0 deletions
diff --git a/etc/nftables.conf b/etc/nftables.conf
index 41f490e9..4726b499 100644
--- a/etc/nftables.conf
+++ b/etc/nftables.conf
@@ -34,6 +34,11 @@ table inet my_table {
# https://github.com/hack3ric/mimic/blob/572a2ae5aeaa156afc2d6064a763e842962735bf/docs/getting-started.md#firewall
tcp dport swgp accept
udp dport swgp accept
+ # wg swgp mimic to ba then ba swgp config set wgEndpoint forward to ib
+ tcp dport swgp-ba-forward-ib accept
+ udp dport swgp-ba-forward-ib accept
+ tcp dport swgp-ba-forward-ca accept
+ udp dport swgp-ba-forward-ca accept
tcp dport monerod-p2p accept
pkttype host limit rate 5/second counter reject with icmpx type admin-prohibited