forked from zentralwerk/network
nixos-module/container/upstream: try fixing upstream.noNat.subnets4
This commit is contained in:
parent
8ee629945d
commit
6a181bbf18
|
@ -94,7 +94,8 @@ in
|
||||||
# Do not NAT our public IPv4 addresses
|
# Do not NAT our public IPv4 addresses
|
||||||
${lib.concatMapStringsSep "\n" (net:
|
${lib.concatMapStringsSep "\n" (net:
|
||||||
lib.concatMapStrings (subnet: ''
|
lib.concatMapStrings (subnet: ''
|
||||||
iptables -t nat -I ${net}_nat \
|
iptables -t nat -I nixos-nat-post \
|
||||||
|
-o ${net} \
|
||||||
-s ${subnet} \
|
-s ${subnet} \
|
||||||
-j RETURN
|
-j RETURN
|
||||||
'') upstreamInterfaces.${net}.upstream.noNat.subnets4 or []
|
'') upstreamInterfaces.${net}.upstream.noNat.subnets4 or []
|
||||||
|
|
Loading…
Reference in New Issue
Block a user