infinet / xt_wgobfs

Iptables WireGuard obfuscation extension
GNU General Public License v2.0
201 stars 24 forks source link

nftables #20

Open SAprelov opened 10 months ago

SAprelov commented 10 months ago

It would be useful to have example for nftables as soon it's a default packet filter for OpenWRT (and not only).

infinet commented 10 months ago

Please see https://forum.openwrt.org/t/wireguard-obfuscation/146054/12 . It shall work with nftables, Basically with new OpenWrt, the old iptables rules still work.

SAprelov commented 10 months ago

Correct. But it's legacy. In next major versions iptables will be completely removed.

lampotakl commented 9 months ago

Seems like it'll require modification of nft sources. https://zasdfgbnm.github.io/2017/09/07/Extending-nftables/

q2dg commented 7 months ago

This article is from 2017 (Nftables v0.7). I don't know if it's still rellevant or things have changed...it would be worth checking