chain input {
type filter hook input priority filter; policy drop;
- iifname "lo" accept comment "!fw4: Accept traffic from loopback"
+ iif "lo" accept comment "!fw4: Accept traffic from loopback"
ct state vmap { established : accept, related : accept } comment "!fw4: Handle inbound flows"
tcp dport 1007 counter log prefix "@rule[6]: " comment "!fw4: @rule[6]"
chain output {
type filter hook output priority filter; policy drop;
- oifname "lo" accept comment "!fw4: Accept traffic towards loopback"
+ oif "lo" accept comment "!fw4: Accept traffic towards loopback"
ct state vmap { established : accept, related : accept } comment "!fw4: Handle outbound flows"
oifname "br-lan" jump output_lan comment "!fw4: Handle lan IPv4/IPv6 output traffic"