fix: type filter for output
This commit is contained in:
+2
-3
@@ -127,7 +127,7 @@ _nft_init() {
|
||||
nft flush chain ip "$TABLE" prerouting
|
||||
nft add rule ip "$TABLE" prerouting fib daddr type local accept
|
||||
|
||||
nft add chain ip "$TABLE" output { type route hook output priority -150 \; policy accept \; } 2>/dev/null
|
||||
nft add chain ip "$TABLE" output { type filter hook output priority -150 \; policy accept \; } 2>/dev/null
|
||||
nft flush chain ip "$TABLE" output
|
||||
nft add rule ip "$TABLE" output fib daddr type local accept
|
||||
|
||||
@@ -343,7 +343,6 @@ _run() {
|
||||
DNS_CHANGES=0; NEED_UPDATE=0; : > "$ACTIVE_LIST"
|
||||
|
||||
[ "$FULL_LOAD" = "1" ] && _wait_for_net
|
||||
_wait_for_net
|
||||
_nft_init
|
||||
|
||||
_log "main: processing data sections" "debug"
|
||||
@@ -422,4 +421,4 @@ case "$1" in
|
||||
reload) export SKIP_URL=1 FULL_LOAD=0; _run "reload" ;;
|
||||
update) export SKIP_URL=0 FULL_LOAD=0; _run "update" ;;
|
||||
*) echo "Usage: $0 {start|stop|restart|reload|update}"; exit 1 ;;
|
||||
esac
|
||||
esac
|
||||
|
||||
Reference in New Issue
Block a user