fix
This commit is contained in:
parent
9866774da8
commit
ba9d56c88e
@ -271,8 +271,6 @@ stop() {
|
|||||||
$NFT insert rule filter input iif lo accept
|
$NFT insert rule filter input iif lo accept
|
||||||
|
|
||||||
$NFT -f /opt/firewall/ipv6-filter.nft
|
$NFT -f /opt/firewall/ipv6-filter.nft
|
||||||
# $NFT add rule ip6 filter input icmpv6 type nd-neighbor-solicit accept
|
|
||||||
# $NFT add rule ip6 filter input icmpv6 type nd-router-advert accept
|
|
||||||
message "Stopping Firewall"
|
message "Stopping Firewall"
|
||||||
}
|
}
|
||||||
|
|
||||||
|
@ -1,12 +1,9 @@
|
|||||||
#!/bin/bash
|
#!/bin/bash
|
||||||
NFT='/usr/bin/nft'
|
NFT='/usr/bin/nft'
|
||||||
HANDLE=($($NFT -n -a list ruleset | grep "ct state 0x8 tcp dport" | grep -E '80|443' | grep handle | cut -d '#' -f2 | cut -d ' ' -f3))
|
HANDLE=($($NFT -a -n list ruleset | grep "ct state 0x8 tcp dport" | grep -E '80|443' | grep handle | cut -d '#' -f2 | cut -d ' ' -f3))
|
||||||
for i in "${HANDLE[@]}"; do
|
for i in "${HANDLE[@]}"; do
|
||||||
if [[ "$i" == *":"* ]]; then
|
$NFT delete rule ip6 filter input handle $i &>/dev/null
|
||||||
$NFT delete rule ip6 filter input handle $i &>/dev/null
|
$NFT delete rule ip filter input handle $i &>/dev/null
|
||||||
else
|
|
||||||
$NFT delete rule filter input handle $i &>/dev/null
|
|
||||||
fi
|
|
||||||
done
|
done
|
||||||
|
|
||||||
echo "Setting Rate Limit to : $1"
|
echo "Setting Rate Limit to : $1"
|
||||||
|
Loading…
x
Reference in New Issue
Block a user