From 1a658b71a0dcc089cd3d16116da5d40b41e244f7 Mon Sep 17 00:00:00 2001 From: staticsafe Date: Sat, 4 Sep 2021 13:47:59 -0400 Subject: [PATCH] fix NAT rules in demonreach.asininetech.net.rules.v6 --- .../files/demonreach.asininetech.net.rules.v6 | 4 ++++ 1 file changed, 4 insertions(+) diff --git a/ubuntu/roles/firewall-ruleset-deploy/files/demonreach.asininetech.net.rules.v6 b/ubuntu/roles/firewall-ruleset-deploy/files/demonreach.asininetech.net.rules.v6 index 11f6dc3..a55f261 100644 --- a/ubuntu/roles/firewall-ruleset-deploy/files/demonreach.asininetech.net.rules.v6 +++ b/ubuntu/roles/firewall-ruleset-deploy/files/demonreach.asininetech.net.rules.v6 @@ -20,6 +20,10 @@ -A icmp_in -p ipv6-icmp -m icmp6 --icmpv6-type 2 -j ACCEPT -A icmp_in -p ipv6-icmp -m icmp6 --icmpv6-type 3 -j ACCEPT -A icmp_in -p ipv6-icmp -m icmp6 --icmpv6-type 4 -j ACCEPT +*nat +:PREROUTING ACCEPT +:INPUT ACCEPT +:OUTPUT ACCEPT :POSTROUTING ACCEPT -A POSTROUTING -s fd42:42:42::/64 -o eth0 -j MASQUERADE COMMIT