From 834890958bcd17da1e41ff7f9b25475047e00c20 Mon Sep 17 00:00:00 2001 From: staticsafe Date: Sat, 20 Nov 2021 23:07:41 -0500 Subject: [PATCH] add tailscale subnet to allow list --- .../files/demonreach.asininetech.net.rules.v4 | 2 ++ 1 file changed, 2 insertions(+) diff --git a/ubuntu/roles/firewall-ruleset-deploy/files/demonreach.asininetech.net.rules.v4 b/ubuntu/roles/firewall-ruleset-deploy/files/demonreach.asininetech.net.rules.v4 index 6a5a150..1a573ea 100644 --- a/ubuntu/roles/firewall-ruleset-deploy/files/demonreach.asininetech.net.rules.v4 +++ b/ubuntu/roles/firewall-ruleset-deploy/files/demonreach.asininetech.net.rules.v4 @@ -14,6 +14,8 @@ -A INPUT -p tcp --dport 53 -s 10.8.0.1/24 -j ACCEPT -A INPUT -p udp --dport 53 -s 10.66.66.0/24 -j ACCEPT -A INPUT -p tcp --dport 53 -s 10.66.66.0/24 -j ACCEPT +-A INPUT -p udp --dport 53 -s 100.64.0.0/10 -j ACCEPT +-A INPUT -p tcp --dport 53 -s 100.64.0.0/10 -j ACCEPT -A INPUT -p udp --dport 51802 -j ACCEPT COMMIT *nat