User Details
User Details
- User Since
- Aug 11 2022, 10:54 PM (89 w, 6 d)
Oct 8 2022
Oct 8 2022
patrickli added a comment to T4612: Support arbitrary netmasks in firewall rules.
A separate mask field is cleaner also from a documentation point of view. But how would you do it for an address/network group? It only makes sense for a single address I suppose.
Aug 15 2022
Aug 15 2022
patrickli added a comment to T4612: Support arbitrary netmasks in firewall rules.
Nice. Is this syntax supported in vyos or it needs some development?
patrickli added a comment to T4612: Support arbitrary netmasks in firewall rules.
OK. I was trying to migrate from an EdgeRouter and this is a rule I used to have.
patrickli added a comment to T4611: UPnP rule IP should be a prefix instead of an address.
set service upnp rule 10 action allow set service upnp rule 10 external-port-range 1024-65536 set service upnp rule 10 internal-port-range 1024-65536 set service upnp rule 10 ip 10.0.0.1/24
patrickli added a comment to T4612: Support arbitrary netmasks in firewall rules.
Yeah nftables is just the engine for iptables. EdgeOS supports this syntax.