refactors internal communication rules in server configuration
This commit is contained in:
parent
7e1a49c29e
commit
7bf22e7023
@ -49,16 +49,16 @@
|
|||||||
];
|
];
|
||||||
|
|
||||||
# Extra rules for allowing internal communication
|
# Extra rules for allowing internal communication
|
||||||
# extraCommands = ''
|
extraCommands = ''
|
||||||
# # Allow established connections
|
# Allow established connections
|
||||||
# iptables -A INPUT -m conntrack --ctstate ESTABLISHED,RELATED -j ACCEPT
|
iptables -A INPUT -m conntrack --ctstate ESTABLISHED,RELATED -j ACCEPT
|
||||||
|
|
||||||
# # Allow all traffic on internal networks
|
# Allow all traffic on internal networks
|
||||||
# iptables -A INPUT -i docker0 -j ACCEPT
|
iptables -A INPUT -i docker0 -j ACCEPT
|
||||||
# iptables -A INPUT -i tailscale0 -j ACCEPT
|
iptables -A INPUT -i tailscale0 -j ACCEPT
|
||||||
|
|
||||||
# # Allow traffic between Docker containers
|
# Allow traffic between Docker containers
|
||||||
# iptables -A DOCKER-USER -i docker0 -o docker0 -j ACCEPT
|
iptables -A DOCKER-USER -i docker0 -o docker0 -j ACCEPT
|
||||||
# '';
|
'';
|
||||||
};
|
};
|
||||||
}
|
}
|
||||||
|
Loading…
x
Reference in New Issue
Block a user