ports/main/nnd-nft/nft/inet/nnd-base/table

44 lines
1014 B
Plaintext

table inet nnd-base {
chain rxfilter {
type filter hook input priority 0;
policy reject;
ct state invalid counter drop;
icmpx counter accept;
include "inet/nnd-base/filter/input/*";
counter reject with icmpx type admin-prohibited;
}
chain fwfilter {
type filter hook forward priority 0;
policy reject;
include "inet/nnd-base/filter/forward/*";
counter reject with icmpx type no-route;
}
chain txfilter {
type filter hook output priority 0;
policy accept;
include "inet/nnd-base/filter/output/*";
}
chain prenat {
type nat hook prerouting priority -100;
policy accept;
include "inet/nnd-base/nat/prerouting/*";
}
chain rxnat {
type nat hook input priority 100;
policy accept;
include "inet/nnd-base/nat/input/*";
}
chain txnat {
type nat hook output priority -100;
policy accept;
include "inet/nnd-base/nat/output/*";
}
chain postnat {
type nat hook postrouting priority 100;
policy accept;
include "inet/nnd-base/nat/postrouting/*";
}
}