!tCyGickeVqkHsYjWnh:nixos.org

NixOS Networking

899 Members
on your Router! Declaratively manage your switching, routing, wireless, tunneling and more.269 Servers

You have reached the beginning of time (for this room).


SenderMessageTime
8 Dec 2025
@okamis:matrix.orgokamis

is this reasonable?

iptables -A OUTPUT -o lo -j ACCEPT
iptables -A OUTPUT -o eth0 -m conntrack --ctstate NEW -j DROP
15:21:45
@k900:0upti.meK900Probably15:22:48
@k900:0upti.meK900I don't remember iptables well enough15:22:54
9 Dec 2025
@adam:robins.wtfadamcstephens changed their profile picture.17:25:09
@adam:robins.wtfadamcstephens changed their profile picture.17:48:29
10 Dec 2025
@truelle_trash_queen:matrix.orgTheodora changed their display name from Theodora The Absurdist Schizotisticoball to Theodora.12:17:46
@adam:robins.wtfadamcstephens changed their profile picture.14:49:51
@denkn:denkn.atDenKnthese rules are a little bit strange. typicaly first via contrack established connections are allowed, and at the end of the table anything else is REJECT (do not use DROP, you not know, which effects it has, right?).21:56:03
@denkn:denkn.atDenKnSo, first use simple rules with ACCEPT, and at the end REJECT anything, which was not accepted.21:56:44
@denkn:denkn.atDenKnIf you do not used firewalls, yet, use nftables instead of iptables. iptables is not dead, but nftables ist better.21:58:23
@jmanch:matrix.orgJManch joined the room.23:23:19
11 Dec 2025
@tg-x:asra.grTG × ⊙ joined the room.20:21:50
12 Dec 2025
@whispers:catgirl.cloudwhispers [& it/fae] changed their profile picture.04:51:30
@alex:epelde.netAlex Epelde joined the room.21:47:11

Show newer messages


Back to Room ListRoom Version: 6