From e651466e5c18c36d498c19af8ff71bddd98f5101 Mon Sep 17 00:00:00 2001 From: Astro Date: Tue, 29 Aug 2023 22:29:55 +0200 Subject: [PATCH] freifunk: remove broken SNAT rule not needed and breaking internet access for others --- hosts/freifunk/default.nix | 2 -- 1 file changed, 2 deletions(-) diff --git a/hosts/freifunk/default.nix b/hosts/freifunk/default.nix index 7d42f8cf..74380ef8 100644 --- a/hosts/freifunk/default.nix +++ b/hosts/freifunk/default.nix @@ -97,8 +97,6 @@ in { # masquerading anything that isn't already their IP range extraCommands = '' ${pkgs.iptables}/bin/iptables -t nat -F POSTROUTING - ${pkgs.iptables}/bin/iptables -t nat -A POSTROUTING \ - \! --source 10.200.0.0/15 -o ${meshInterface} -j SNAT --to 10.200.${ddmeshAddrPart} ${pkgs.iptables}/bin/iptables -t nat -A POSTROUTING \ \! --source 10.200.0.0/15 -o ipip-node51001 -j SNAT --to 10.200.${ddmeshAddrPart} ${pkgs.iptables}/bin/iptables -t nat -o bat0 -A POSTROUTING -j MASQUERADE