From 555026dd84484b4a0c35f9b4bab031e718e97e5b Mon Sep 17 00:00:00 2001 From: Astro Date: Sun, 18 Sep 2022 19:25:58 +0200 Subject: [PATCH] nixos-module/container/upstream: put noNat.subnets4 in proper iptables chain --- nix/nixos-module/container/upstream.nix | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/nix/nixos-module/container/upstream.nix b/nix/nixos-module/container/upstream.nix index de23478..b0141dc 100644 --- a/nix/nixos-module/container/upstream.nix +++ b/nix/nixos-module/container/upstream.nix @@ -94,7 +94,7 @@ in # Do not NAT our public IPv4 addresses ${lib.concatMapStringsSep "\n" (net: lib.concatMapStrings (subnet: '' - iptables -t nat -I nixos-nat-post \ + iptables -t nat -I ${net}_nat \ -s ${subnet} \ -j RETURN '') upstreamInterfaces.${net}.upstream.noNat.subnets4 or []