Fix rootfull podman containers
This commit is contained in:
@@ -97,6 +97,9 @@ table inet firewall {
|
|||||||
iifname $vpn ip daddr $lan_net drop # Block all other VPN clients from accessing the LAN network
|
iifname $vpn ip daddr $lan_net drop # Block all other VPN clients from accessing the LAN network
|
||||||
|
|
||||||
iifname $vpn oifname $wan accept # Allow VPN traffic to access WAN
|
iifname $vpn oifname $wan accept # Allow VPN traffic to access WAN
|
||||||
|
|
||||||
|
iifname "podman*" accept # allow traffic from podman interfaces (podman0, podman1, ...)
|
||||||
|
oifname "podman*" accept # allow traffic to podman interfaces (podman0, podman1, ...)
|
||||||
}
|
}
|
||||||
|
|
||||||
chain outgoing {
|
chain outgoing {
|
||||||
|
|||||||
Reference in New Issue
Block a user