You cannot select more than 25 topics Topics must start with a letter or number, can include dashes ('-') and can be up to 35 characters long.
tailscale/wgengine/router
Andrew Lytvynov 728622665f
1.48 cherry-picks for nftables (#8989)
* wgengine/router: fall back and set iptables as default again

Due to the conflict between our nftables implementation and ufw, which is a common utility used
on linux. We now want to take a step back to prevent regression. This will give us more chance to
let users to test our nftables support and heuristic.

Updates: #391
Signed-off-by: KevinLiang10 <kevinliang@tailscale.com>
(cherry picked from commit 93cab56277)

* util/linuxfw: reorganize nftables rules to allow it to work with ufw

This commit tries to mimic the way iptables-nft work with the filewall rules. We
follow the convention of using tables like filter, nat and the conventional
chains, to make our nftables implementation work with ufw.

Updates: #391

Signed-off-by: KevinLiang10 <kevinliang@tailscale.com>
(cherry picked from commit b040094b90)

* tailcfg: update docs on NetInfo.FirewallMode

Updates #391

Change-Id: Ifef196b31dd145f424fb0c0d0bb04565cc22c717
Signed-off-by: Brad Fitzpatrick <bradfitz@tailscale.com>
(cherry picked from commit 282dad1b62)

---------

Co-authored-by: KevinLiang10 <kevinliang@tailscale.com>
Co-authored-by: Brad Fitzpatrick <bradfitz@tailscale.com>
2 years ago
..
callback.go wgengine/router,ipn/ipnlocal: add MTU field to router config 3 years ago
ifconfig_windows.go all: update exp/slices and fix call sites 3 years ago
ifconfig_windows_test.go all: update copyright and license headers 3 years ago
router.go wgengine/router,ipn/ipnlocal: add MTU field to router config 3 years ago
router_darwin.go all: move network monitoring from wgengine/monitor to net/netmon 3 years ago
router_default.go all: move network monitoring from wgengine/monitor to net/netmon 3 years ago
router_fake.go all: update copyright and license headers 3 years ago
router_freebsd.go all: move network monitoring from wgengine/monitor to net/netmon 3 years ago
router_linux.go 1.48 cherry-picks for nftables (#8989) 2 years ago
router_linux_test.go wgengine/router: use iptablesRunner when no firewall tool is available: 2 years ago
router_openbsd.go all: move network monitoring from wgengine/monitor to net/netmon 3 years ago
router_test.go wgengine/router,ipn/ipnlocal: add MTU field to router config 3 years ago
router_userspace_bsd.go all: move network monitoring from wgengine/monitor to net/netmon 3 years ago
router_windows.go all: move network monitoring from wgengine/monitor to net/netmon 3 years ago
runner.go all: update copyright and license headers 3 years ago