Open punishedJib opened 1 month ago
The network namespace connects via the network interface, so I think dropping everything like this will also drop the VPN traffic?
What do you want it to do?
I wanted it to drop everything by default, but have the vopono rules apply when I use it. If I add the rules to the chain manually in my table it works. But I don't know how I would test to see if it's actually dropping everyhting except the vopono packets or just getting overridden.
Hi, I have 0 experience with networking and nftables. If I add to my table a filter chain with a forward hook that by default drops everything, vopono won't work. I even set its priority to be very high but to no prevail.
Here's my ruleset when running vopono: