Difference between revisions of "Template:nftables/config"
From wiki
(Whitespace take 2) |
(remove useless whitespace) |
||
Line 61: | Line 61: | ||
</noinclude><includeonly>Assuming that you configured [[nftables|nftables as described]], you can edit file <code>/etc/nftables/main_config.conf</code> and add | </noinclude><includeonly>Assuming that you configured [[nftables|nftables as described]], you can edit file <code>/etc/nftables/main_config.conf</code> and add | ||
{{#tag:syntaxhighlight| | {{#tag:syntaxhighlight| | ||
− | {{If || {{{category|}}} | # {{{category}}} | + | {{If || {{{category|}}} |# {{{category}}} |
− | }}{{If || {{{tcp_port_out|}}} | add element inet main tcp_port_out { {{{tcp_port_out}}} } | + | }}{{If || {{{tcp_port_out|}}} |add element inet main tcp_port_out { {{{tcp_port_out}}} } |
− | }}{{If || {{{udp_port_out|}}} | add element inet main udp_port_out { {{{udp_port_out}}} } | + | }}{{If || {{{udp_port_out|}}} |add element inet main udp_port_out { {{{udp_port_out}}} } |
− | }}{{If || {{{user_out|}}} | add element inet main user_out { {{{user_out}}} } | + | }}{{If || {{{user_out|}}} |add element inet main user_out { {{{user_out}}} } |
− | }}{{If || {{{tcp_port_in|}}} | add element inet main tcp_port_in { {{{tcp_port_in}}} } | + | }}{{If || {{{tcp_port_in|}}} |add element inet main tcp_port_in { {{{tcp_port_in}}} } |
− | }}{{#if: {{{udp_port_in|}}} | add element inet main udp_port_in { {{{udp_port_in}}} } }} | + | }}{{#if: {{{udp_port_in|}}} |add element inet main udp_port_in { {{{udp_port_in}}} } }} |
|lang="sh"}} | |lang="sh"}} | ||
and activate it using | and activate it using |
Revision as of 22:30, 30 May 2016
Description
Configure nftables
Parameter | Description | Type | Status | |
---|---|---|---|---|
Category | category | Label be used as category header
| String | suggested |
tcp_port_in | tcp_port_in | Comma separated list of TCP ports to open from the internet to the machine
| String | suggested |
udp_port_in | udp_port_in | Comma separated list of UDP ports to open from the internet to the machine
| String | suggested |
tcp_port_out | tcp_port_out | Comma separated list of TCP ports to open from the machine to the internet
| String | suggested |
udp_port_out | udp_port_out | Comma separated list of UDP ports to open from the machine to the internet
| String | suggested |
user_out | user_out | Comma separated list of user with unlimited internet access
| String | suggested |