From 6a181bbf183f04399c47bea82394d7666e3f2678 Mon Sep 17 00:00:00 2001 From: Astro Date: Sun, 18 Sep 2022 23:02:46 +0200 Subject: [PATCH] nixos-module/container/upstream: try fixing upstream.noNat.subnets4 --- nix/nixos-module/container/upstream.nix | 3 ++- 1 file changed, 2 insertions(+), 1 deletion(-) diff --git a/nix/nixos-module/container/upstream.nix b/nix/nixos-module/container/upstream.nix index e8eba5b..2edf7b4 100644 --- a/nix/nixos-module/container/upstream.nix +++ b/nix/nixos-module/container/upstream.nix @@ -94,7 +94,8 @@ in # Do not NAT our public IPv4 addresses ${lib.concatMapStringsSep "\n" (net: lib.concatMapStrings (subnet: '' - iptables -t nat -I ${net}_nat \ + iptables -t nat -I nixos-nat-post \ + -o ${net} \ -s ${subnet} \ -j RETURN '') upstreamInterfaces.${net}.upstream.noNat.subnets4 or []