Template:nftables/config: Difference between revisions
From wiki
Whitespace |
Whitespace take 2 |
||
Line 61: | Line 61: | ||
</noinclude><includeonly>Assuming that you configured [[nftables|nftables as described]], you can edit file <code>/etc/nftables/main_config.conf</code> and add | </noinclude><includeonly>Assuming that you configured [[nftables|nftables as described]], you can edit file <code>/etc/nftables/main_config.conf</code> and add | ||
{{#tag:syntaxhighlight| | {{#tag:syntaxhighlight| | ||
{{ | {{If || {{{category|}}} | # {{{category}}} | ||
}}{{If || {{{tcp_port_out|}}} | add element inet main tcp_port_out { {{{tcp_port_out}}} } | |||
}}{{ | }}{{If || {{{udp_port_out|}}} | add element inet main udp_port_out { {{{udp_port_out}}} } | ||
{{ | }}{{If || {{{user_out|}}} | add element inet main user_out { {{{user_out}}} } | ||
}}{{If || {{{tcp_port_in|}}} | add element inet main tcp_port_in { {{{tcp_port_in}}} } | |||
{{ | |||
{{ | |||
}}{{#if: {{{udp_port_in|}}} | add element inet main udp_port_in { {{{udp_port_in}}} } }} | }}{{#if: {{{udp_port_in|}}} | add element inet main udp_port_in { {{{udp_port_in}}} } }} | ||
|lang="sh"}} | |lang="sh"}} |
Revision as of 22:22, 30 May 2016
Description
Configure nftables
Parameter | Description | Type | Status | |
---|---|---|---|---|
Category | category | Label be used as category header
| String | suggested |
tcp_port_in | tcp_port_in | Comma separated list of TCP ports to open from the internet to the machine
| String | suggested |
udp_port_in | udp_port_in | Comma separated list of UDP ports to open from the internet to the machine
| String | suggested |
tcp_port_out | tcp_port_out | Comma separated list of TCP ports to open from the machine to the internet
| String | suggested |
udp_port_out | udp_port_out | Comma separated list of UDP ports to open from the machine to the internet
| String | suggested |
user_out | user_out | Comma separated list of user with unlimited internet access
| String | suggested |