diff options
author | PÁLI Gábor János <pali.gabor@gmail.com> | 2024-03-19 11:01:46 +0100 |
---|---|---|
committer | PÁLI Gábor János <pali.gabor@gmail.com> | 2024-03-24 14:49:56 +0100 |
commit | 12cb08b82a8d2dd7ff40d11c02178de916d835e8 (patch) | |
tree | ab8f68b5ce6fb670de451ff1b61d3929047a27cb /etc/optional/ipv6/wpa_supplicant | |
parent | d7e702dd5529860e3d97a84e387bad95573f5894 (diff) | |
download | freebsd-wifibox-alpine-12cb08b82a8d2dd7ff40d11c02178de916d835e8.zip |
iptables: drop redundant rules about forwarding
There is actually no point in keeping those 2 rules as the default
action in `FORWARD` chain is `ACCEPT` anyways. Removing them helps
to save a few CPU cycles.
Submitted by: Anton Saietskii <vsasjason@gmail.com>
Diffstat (limited to 'etc/optional/ipv6/wpa_supplicant')
-rw-r--r-- | etc/optional/ipv6/wpa_supplicant/appliance/ip6tables.sample | 3 |
1 files changed, 0 insertions, 3 deletions
diff --git a/etc/optional/ipv6/wpa_supplicant/appliance/ip6tables.sample b/etc/optional/ipv6/wpa_supplicant/appliance/ip6tables.sample index 42d881f..1503bc3 100644 --- a/etc/optional/ipv6/wpa_supplicant/appliance/ip6tables.sample +++ b/etc/optional/ipv6/wpa_supplicant/appliance/ip6tables.sample @@ -10,9 +10,6 @@ *filter :INPUT ACCEPT [0:0] :OUTPUT ACCEPT [0:0] -:FORWARD ACCEPT [0:0] -[0:0] -A FORWARD -i eth0 -o wlan0 -m state --state RELATED,ESTABLISHED -j ACCEPT -[0:0] -A FORWARD -i eth0 -o wlan0 -j ACCEPT COMMIT *nat :INPUT ACCEPT [0:0] |