Re: Netfilter not dropping packets as it should
Binarus <[email protected]>
| Newsgroups | gmane.comp.security.firewalls.netfilter.general |
|---|---|
| Message-ID | <[email protected]> |
On 30.01.2025 21:33, Slavko wrote: > On 30. januára 2025 19:35:28 UTC, Binarus <[email protected]> wrote: > >> Please consider the ruleset that's at the end of this post. It doesn't make any sense, but it lets everybody reproduce the problem easily. > > IMO, try to set in prerouting hook: > > nftrace set 1 > > And then try to connect to SSH and post output of: > > nft monitor trace > > While i don't know how netdev table steps in play, we > then will not need to guess... Thank you very much. I would like to apologize for the noise, because it seems that I cannot reproduce the problem any more. Therefore I can't provide the output of nft monitor trace. I have no clue what initially caused the problem, but obviously, it was my own fault. The ruleset actually is working as expected. Best regards, Binarus > > > -- > Slavko > https://www.slavino.sk/ > >