Files
bpfire/src
Michael Tremer 525ff6d74d firewall: Move the IPS after the NAT marking
This is because we might still land in the scenario where Suricata
crashes and NFQUEUE will simply ACCEPT all packets which will terminate
the processing of the mangle table.

Therefore the NFQUEUE rule should be the last one so that we never skip
any of the other processing.

Signed-off-by: Michael Tremer <michael.tremer@ipfire.org>
2024-09-24 08:43:41 +00:00
..
2017-05-18 11:50:15 +01:00
2024-06-04 15:06:34 +02:00
2024-09-09 15:41:38 +00:00
2024-05-19 10:00:34 +02:00
2022-07-06 09:57:22 +00:00