Browse Source

move udp to nft POSTNAT scheme

pull/178/head
bol-van 1 year ago
parent
commit
becd566b7f
  1. 2
      init.d/openwrt/custom-tpws4http-nfqws4https
  2. 2
      init.d/sysv/custom-tpws4http-nfqws4https

2
init.d/openwrt/custom-tpws4http-nfqws4https

@ -45,8 +45,6 @@ zapret_custom_firewall_nft()
{
# stop logic is not required
# do not use POSTNAT for udp first packet desync !
local POSTNAT=1
local f4 f6
local first_packet_only="$nft_connbytes 1-$(first_packets_for_mode)"
local desync="mark and $DESYNC_MARK == 0"

2
init.d/sysv/custom-tpws4http-nfqws4https

@ -47,8 +47,6 @@ zapret_custom_firewall_nft()
{
# stop logic is not required
# do not use POSTNAT for udp first packet desync !
local POSTNAT=1
local f4 f6
local first_packet_only="$nft_connbytes 1-$(first_packets_for_mode)"
local desync="mark and $DESYNC_MARK == 0"

Loading…
Cancel
Save