diff options
Diffstat (limited to 'etc/nftables.conf')
-rw-r--r-- | etc/nftables.conf | 16 |
1 files changed, 10 insertions, 6 deletions
diff --git a/etc/nftables.conf b/etc/nftables.conf index bd943c12..c4ca7f45 100644 --- a/etc/nftables.conf +++ b/etc/nftables.conf @@ -33,12 +33,16 @@ table inet my_table { #udp dport qbt accept #tcp dport iperf3 accept udp dport wireguard accept - # email ports - #tcp dport smtp accept - #udp dport smtp accept - # other email ports? seems blocked by crunchbits - #tcp dport 465 accept - #tcp dport 587 accept + # for acme.sh standalone mode builtin webserver to renew ssl cert + tcp dport http accept + # email related ports + tcp dport smtp accept + tcp dport pop3 accept + tcp dport imap accept + tcp dport submissions accept + tcp dport submission accept + tcp dport imaps accept + tcp dport pop3s accept pkttype host limit rate 5/second counter reject with icmpx type admin-prohibited counter comment "count any other traffic" |