ansible-edda/playbooks/filesystem/valkyrie/usr/local/sbin/post-up-wg0.nft.j2

17 lines
458 B
Django/Jinja

#!/usr/bin/env -S nft -f
table inet wg0_mss_clamping {
chain forward {
type filter hook forward priority 0;
iif wg0 tcp flags syn tcp option maxseg size set rt mtu;
oif wg0 tcp flags syn tcp option maxseg size set rt mtu;
}
}
table ip wg0_nat {
chain postrouting {
type nat hook postrouting priority 100;
iif wg0 oif {{ ethx }} masquerade;
}
}