diff options
| author | David Lönnhager <david.l@mullvad.net> | 2024-10-18 10:53:25 +0200 |
|---|---|---|
| committer | David Lönnhager <david.l@mullvad.net> | 2024-10-22 10:52:07 +0200 |
| commit | 3e563395a41c68e2accef6a6ebeeb4c6e52d1642 (patch) | |
| tree | 3eec8580460592acb191b19ae2f666bfb36bddfc | |
| parent | e87e17f9fcf91de8c1d1f97c243d423e06ae7257 (diff) | |
| download | mullvadvpn-3e563395a41c68e2accef6a6ebeeb4c6e52d1642.tar.xz mullvadvpn-3e563395a41c68e2accef6a6ebeeb4c6e52d1642.zip | |
Add comment about not flushing LAN pf states
| -rw-r--r-- | talpid-core/src/firewall/macos.rs | 2 |
1 files changed, 2 insertions, 0 deletions
diff --git a/talpid-core/src/firewall/macos.rs b/talpid-core/src/firewall/macos.rs index 116596b33e..bb0b7b34f6 100644 --- a/talpid-core/src/firewall/macos.rs +++ b/talpid-core/src/firewall/macos.rs @@ -115,6 +115,8 @@ impl Firewall { .chain(ALLOWED_LAN_MULTICAST_NETS.iter()) .any(|net| net.contains(remote_address.ip())); if net_is_lan { + // Since LAN traffic is allowed, there's no need to flush these states, and + // connections initiated before a firewall state change should not be interrupted. return Ok(false); } } |
