You cannot select more than 25 topics Topics must start with a letter or number, can include dashes ('-') and can be up to 35 characters long.
tailscale/util/linuxfw
Anton Tolchanov ac638f32c0 util/linuxfw: fix stateful packet filtering in nftables mode
To match iptables:
b5dbf155b1/util/linuxfw/iptables_runner.go (L536)

Updates #12066

Signed-off-by: Anton Tolchanov <anton@tailscale.com>
2 years ago
..
linuxfwtest util/linuxfw: initial implementation of package 3 years ago
detector.go linuxfw,wgengine/route,ipn: add c2n and nodeattrs to control linux netfilter 2 years ago
fake.go various: implement stateful firewalling on Linux (#12025) 2 years ago
helpers.go all: cleanup unused code, part 2 (#10670) 2 years ago
iptables.go util/linuxfw: move detection logic 2 years ago
iptables_runner.go various: implement stateful firewalling on Linux (#12025) 2 years ago
iptables_runner_test.go util/linuxfw,go.{mod,sum}: don't log errors when deleting non-existant chains and rules (#11852) 2 years ago
linuxfw.go util/linuxfw,go.{mod,sum}: don't log errors when deleting non-existant chains and rules (#11852) 2 years ago
linuxfw_unsupported.go all: cleanup unused code, part 2 (#10670) 2 years ago
nftables.go util/cmpx: delete now that we're using Go 1.22 2 years ago
nftables_runner.go util/linuxfw: fix stateful packet filtering in nftables mode 2 years ago
nftables_runner_test.go util/linuxfw: add missing error checks in tests 2 years ago
nftables_types.go util/linuxfw: add new arch build constraints 3 years ago