ansible-roles/vpn/wireguard/templates/post-up-IFACE-inet.nft

10 lines
349 B
Plaintext
Raw Normal View History

2023-07-20 20:27:37 +02:00
#!/usr/bin/env -S nft -f
table inet {{ vpn_wireguard_iface }}_inet {
chain forward {
type filter hook forward priority 0;
iif {{ vpn_wireguard_iface }} tcp flags syn tcp option maxseg size set rt mtu;
oif {{ vpn_wireguard_iface }} tcp flags syn tcp option maxseg size set rt mtu;
}
}