From 6c565ffa74ea4968da99b9248253d71fb92fb278 Mon Sep 17 00:00:00 2001 From: shiraorie Date: Thu, 6 Nov 2025 12:18:11 +0500 Subject: [PATCH] 1 --- files/br-rtr/nftables.conf | 8 ++++---- files/hq-rtr/nftables.conf | 8 ++++---- 2 files changed, 8 insertions(+), 8 deletions(-) diff --git a/files/br-rtr/nftables.conf b/files/br-rtr/nftables.conf index c338fe2..fceb65f 100755 --- a/files/br-rtr/nftables.conf +++ b/files/br-rtr/nftables.conf @@ -8,8 +8,8 @@ table inet filter { log prefix "Dropped Input: " level debug iif lo accept ct state established,related accept - tcp dport { 22,514,53,80,443,3015,445,139,88,2026,8080 } accept - udp dport { 53,123,500,4500,88,137,8080 } accept + tcp dport { 22,514,53,80,443,3015,445,139,88,2026,8080,2049 } accept + udp dport { 53,123,500,4500,88,137,8080,2049 } accept ip protocol icmp accept ip protocol esp accept ip protocol gre accept @@ -20,8 +20,8 @@ table inet filter { log prefix "Dropped forward: " level debug iif lo accept ct state established,related accept - tcp dport { 22,514,53,80,443,3015,445,139,88,2026,8080 } accept - udp dport { 53,123,500,4500,88,137,8080 } accept + tcp dport { 22,514,53,80,443,3015,445,139,88,2026,8080,2049 } accept + udp dport { 53,123,500,4500,88,137,8080,2049 } accept ip protocol icmp accept ip protocol esp accept ip protocol gre accept diff --git a/files/hq-rtr/nftables.conf b/files/hq-rtr/nftables.conf index 337cceb..4ea8484 100755 --- a/files/hq-rtr/nftables.conf +++ b/files/hq-rtr/nftables.conf @@ -8,8 +8,8 @@ table inet filter { log prefix "Dropped Input: " level debug iif lo accept ct state established,related accept - tcp dport { 22,514,53,80,443,3015,445,139,88,2026,8080,631 } accept - udp dport { 53,123,500,4500,88,137,8080,631 } accept + tcp dport { 22,514,53,80,443,3015,445,139,88,2026,8080,631,2049 } accept + udp dport { 53,123,500,4500,88,137,8080,631,2049 } accept ip protocol icmp accept ip protocol esp accept ip protocol gre accept @@ -20,8 +20,8 @@ table inet filter { log prefix "Dropped forward: " level debug iif lo accept ct state established,related accept - tcp dport { 22,514,53,80,443,3015,445,139,88,2026,8080,631 } accept - udp dport { 53,123,500,4500,88,137,8080,631 } accept + tcp dport { 22,514,53,80,443,3015,445,139,88,2026,8080,631,2049 } accept + udp dport { 53,123,500,4500,88,137,8080,631,2049 } accept ip protocol icmp accept ip protocol esp accept ip protocol gre accept