diff --git a/files/br-rtr/nftables.conf b/files/br-rtr/nftables.conf index d878650..ebeafa8 100755 --- a/files/br-rtr/nftables.conf +++ b/files/br-rtr/nftables.conf @@ -5,7 +5,7 @@ flush ruleset table inet filter { chain input { type filter hook input priority 0; policy drop; - log prefix "Dropped Input: " level debug +# log prefix "Dropped Input: " level debug iif lo accept ct state established,related accept tcp dport { 22,514,53,80,443,3015,445,139,88,2026,8080,2049,389,10050,10051 } accept @@ -17,7 +17,7 @@ table inet filter { } chain forward { type filter hook forward priority 0; policy drop; - log prefix "Dropped forward: " level debug +# log prefix "Dropped forward: " level debug iif lo accept ct state established,related accept tcp dport { 22,514,53,80,443,3015,445,139,88,2026,8080,2049,389,10050,10051 } accept diff --git a/files/hq-rtr/nftables.conf b/files/hq-rtr/nftables.conf index 641cd39..92f4415 100755 --- a/files/hq-rtr/nftables.conf +++ b/files/hq-rtr/nftables.conf @@ -5,7 +5,7 @@ flush ruleset table inet filter { chain input { type filter hook input priority 0; policy drop; - log prefix "Dropped Input: " level debug +# log prefix "Dropped Input: " level debug iif lo accept ct state established,related accept tcp dport { 22,514,53,80,443,3015,445,139,88,2026,8080,631,2049,389,10050,10051 } accept @@ -17,7 +17,7 @@ table inet filter { } chain forward { type filter hook forward priority 0; policy drop; - log prefix "Dropped forward: " level debug +# log prefix "Dropped forward: " level debug iif lo accept ct state established,related accept tcp dport { 22,514,53,80,443,3015,445,139,88,2026,8080,631,2049,389,10050,10051 } accept