summaryrefslogtreecommitdiffhomepage
path: root/util/linuxfw/nftables_runner.go
AgeCommit message (Expand)AuthorFilesLines
2025-05-12util/linuxfw,wgengine/router: add new netfilter rules for HA ingresses (#15896)Irbe Krumina1-5/+15
2025-05-01util/linuxfw: fix delete snat rule (#15763)KevinLiang101-38/+26
2024-10-03cmd/containerboot,util/linuxfw: create a SNAT rule for dst/src only once, cle...Irbe Krumina1-40/+65
2024-09-29cmd/containerboot,kube,util/linuxfw: configure kube egress proxies to route t...Irbe Krumina1-0/+6
2024-08-03util/linuxfw: return nil interface not concrete typeMaisem Ali1-2/+16
2024-06-25util/linuxfw: verify that IPv6 if available if (#12598)Irbe Krumina1-10/+28
2024-05-14util/linuxfw: fix IPv6 availability check for nftables (#12009)Irbe Krumina1-31/+18
2024-05-09util/linuxfw: fix table name in DelStatefulRuleAndrew Dunham1-1/+1
2024-05-09util/linuxfw: fix stateful packet filtering in nftables modeAnton Tolchanov1-1/+1
2024-05-06various: implement stateful firewalling on Linux (#12025)Andrew Lytvynov1-0/+196
2024-04-23cmd{containerboot,k8s-operator},util/linuxfw: support ExternalName Services (...Irbe Krumina1-2/+18
2024-04-05util/linuxfw: fix chain comparison (#11639)Irbe Krumina1-1/+1
2024-04-02util/linuxfw: fix MSS clamping in nftables mode (#11588)Irbe Krumina1-4/+28
2024-03-29util/linuxfw,wgengine/router: skip IPv6 firewall configuration in partial ipt...Irbe Krumina1-11/+23
2024-03-21util/linuxfw,wgengine/router: enable IPv6 configuration when netfilter is dis...James Tucker1-1/+1
2024-03-06util/linuxfw: add container-friendly IPv6 NAT check (#11353)Irbe Krumina1-4/+7
2024-02-29util/linuxfw: insert rather than append nftables DNAT rule (#11303)Irbe Krumina1-1/+1
2024-02-07.github/workflows: add privileged tests workflowJames Tucker1-1/+1
2023-12-12util/linuxfw: return created chain (#10563)Irbe Krumina1-1/+1
2023-12-05util/linuxfw, wgengine: allow ingress to magicsock UDP port on Linux (#10370)Naman Sood1-0/+139
2023-12-05linuxfw,wgengine/route,ipn: add c2n and nodeattrs to control linux netfilterNaman Sood1-4/+7
2023-10-18util/linuxfw: add additional nftable detection logicMaisem Ali1-20/+75
2023-10-11cmd/containerboot: use linuxfw.NetfilterRunnerMaisem Ali1-5/+279
2023-10-10util/linuxfw: move detection logicMaisem Ali1-3/+61
2023-10-10util/linuxfw: add missing input rule to the tailscale tunJames Tucker1-0/+43
2023-09-27util/linuxfw: fix crash in DelSNATRule when no rules are foundJames Tucker1-1/+3
2023-09-02client/web, clientupdate, util/linuxfw, wgengine/magicsock: Use %v verb for e...Craig Rodrigues1-1/+1
2023-08-21util/linuxfw: fix typo in unexported doc commentBrad Fitzpatrick1-1/+2
2023-08-18util/linuxfw: reorganize nftables rules to allow it to work with ufwKevinLiang101-17/+219
2023-07-19util/linuxfw: add nftables supportKevinLiang101-0/+977