summaryrefslogtreecommitdiff
diff options
context:
space:
mode:
authorKjetil Orbekk <kj@orbekk.com>2023-10-07 10:29:55 -0400
committerKjetil Orbekk <kj@orbekk.com>2023-10-07 10:29:55 -0400
commitaa2a7acc69afc8be1469137911e385587222ec06 (patch)
treeacc6b79f43bea06d8d13ab5b9c01084a620f9be8
parent9f095862ac4c2123c8dc913eed68586f235fdc4a (diff)
fix
-rw-r--r--modules/router.nix2
1 files changed, 1 insertions, 1 deletions
diff --git a/modules/router.nix b/modules/router.nix
index 4522fde..a0c5a8f 100644
--- a/modules/router.nix
+++ b/modules/router.nix
@@ -185,7 +185,7 @@ let
iifname lo accept
ct state {established, related} counter accept
- meta l4proto {tcp, udp} th dport {bootps, bootpc, domain, dhcpv6-client, dhcpv6-server} counter accept
+ meta l4proto {tcp, udp} th dport {bootps, bootpc, domain, dhcpv6-client, dhcpv6-server ${toString vpnPort}} counter accept
ip protocol ipv6 counter accept comment "sit tunnel"
ip protocol icmp limit rate 4/second counter accept comment "icmp v4"