CBL-Mariner/SPECS/iptables
AZaugg f6fb8ba372
Remove redirect and add icmp to default iptables (#5661)
* iptables restart and default rulesets

Made some small modifications to iptables
Removed icmpv6 redirect iptables rule and disabled redirect kernel option
to keep in line with security best practices.

Adding icmpv4 type 3 for TTL decrementation allowing the host to
more effectively use traceroute.

Adding icmpv4 type 11 in the rare event that MTU negotiation
needs to occur.
2023-06-20 12:13:45 -07:00
..
ip4save Remove redirect and add icmp to default iptables (#5661) 2023-06-20 12:13:45 -07:00
ip6save Remove redirect and add icmp to default iptables (#5661) 2023-06-20 12:13:45 -07:00
iptables Remove redirect and add icmp to default iptables (#5661) 2023-06-20 12:13:45 -07:00
iptables.service Initial CBL-Mariner commit to GitHub 2020-08-06 20:17:52 -07:00
iptables.signatures.json Remove redirect and add icmp to default iptables (#5661) 2023-06-20 12:13:45 -07:00
iptables.spec Remove redirect and add icmp to default iptables (#5661) 2023-06-20 12:13:45 -07:00
iptables.stop Initial CBL-Mariner commit to GitHub 2020-08-06 20:17:52 -07:00