diff --git a/etc/nftables/nftables-ns1.conf b/etc/nftables/nftables-ns1.conf index bf95f01..131dc30 100644 --- a/etc/nftables/nftables-ns1.conf +++ b/etc/nftables/nftables-ns1.conf @@ -156,7 +156,7 @@ table inet filter { type filter hook output priority raw oif lo goto output-raw-loopback - skuid != { root, systemd-network, unbound, alpm, chrony, http, powerdns, dnsdist, geoipupdate, zerotier-one, bird } counter goto graceful-reject + skuid != { root, systemd-network, unbound, alpm, chrony, http, powerdns, dnsdist, geoipupdate, bird } counter goto graceful-reject udp sport $udp-ports notrack accept # translate DSCP to priority for fq bands @@ -168,15 +168,13 @@ table inet filter { chain output-raw-loopback { skuid unbound meta l4proto { tcp, udp } th sport 53 th dport >= 1024 notrack accept - skuid { alpm, chrony, geoipupdate, zerotier-one } meta l4proto { tcp, udp } th sport >= 1024 th dport 53 notrack accept + skuid { alpm, chrony, geoipupdate } meta l4proto { tcp, udp } th sport >= 1024 th dport 53 notrack accept skuid powerdns meta l4proto { tcp, udp } th sport 54 th dport >= 1024 notrack accept skuid { dnsdist, powerdns } meta l4proto { tcp, udp } th sport >= 1024 th dport 54 notrack accept skuid dnsdist tcp sport 55 tcp dport >= 1024 notrack accept - skuid zerotier-one tcp sport 999 tcp dport >= 1024 notrack accept - skuid != root counter goto graceful-reject notrack accept } diff --git a/etc/pacreport.conf b/etc/pacreport.conf index 8ac5363..f2ba78a 100644 --- a/etc/pacreport.conf +++ b/etc/pacreport.conf @@ -202,8 +202,3 @@ valkey = etc/tmpfiles.d/valkey.conf valkey = var/lib/valkey xfsprogs = etc/systemd/system/xfs_fsr.service xfsprogs = var/lib/.fsrlast -zerotier-one = etc/iproute2 -zerotier-one = etc/systemd/system/rage4-setup.service -zerotier-one = usr/local/bin/rage4-setup -zerotier-one = usr/local/bin/rage4-zerotier-connect -zerotier-one = var/lib/zerotier-one diff --git a/packages/bom.ns1.grapheneos.org b/packages/bom.ns1.grapheneos.org index 9a5446e..a6acd57 100644 --- a/packages/bom.ns1.grapheneos.org +++ b/packages/bom.ns1.grapheneos.org @@ -40,4 +40,3 @@ tree unbound xfsprogs yaml-cpp -zerotier-one diff --git a/packages/fra.ns1.grapheneos.org b/packages/fra.ns1.grapheneos.org index 9a5446e..a6acd57 100644 --- a/packages/fra.ns1.grapheneos.org +++ b/packages/fra.ns1.grapheneos.org @@ -40,4 +40,3 @@ tree unbound xfsprogs yaml-cpp -zerotier-one diff --git a/packages/lax.ns1.grapheneos.org b/packages/lax.ns1.grapheneos.org index 9a5446e..a6acd57 100644 --- a/packages/lax.ns1.grapheneos.org +++ b/packages/lax.ns1.grapheneos.org @@ -40,4 +40,3 @@ tree unbound xfsprogs yaml-cpp -zerotier-one diff --git a/packages/lon.ns1.grapheneos.org b/packages/lon.ns1.grapheneos.org index 9a5446e..a6acd57 100644 --- a/packages/lon.ns1.grapheneos.org +++ b/packages/lon.ns1.grapheneos.org @@ -40,4 +40,3 @@ tree unbound xfsprogs yaml-cpp -zerotier-one diff --git a/packages/mia.ns1.grapheneos.org b/packages/mia.ns1.grapheneos.org index 9a5446e..a6acd57 100644 --- a/packages/mia.ns1.grapheneos.org +++ b/packages/mia.ns1.grapheneos.org @@ -40,4 +40,3 @@ tree unbound xfsprogs yaml-cpp -zerotier-one diff --git a/packages/nyc.ns1.grapheneos.org b/packages/nyc.ns1.grapheneos.org index 64f921d..c2fcc0e 100644 --- a/packages/nyc.ns1.grapheneos.org +++ b/packages/nyc.ns1.grapheneos.org @@ -41,4 +41,3 @@ tree unbound xfsprogs yaml-cpp -zerotier-one diff --git a/packages/sao.ns1.grapheneos.org b/packages/sao.ns1.grapheneos.org index 9a5446e..a6acd57 100644 --- a/packages/sao.ns1.grapheneos.org +++ b/packages/sao.ns1.grapheneos.org @@ -40,4 +40,3 @@ tree unbound xfsprogs yaml-cpp -zerotier-one diff --git a/packages/sea.ns1.grapheneos.org b/packages/sea.ns1.grapheneos.org index 9a5446e..a6acd57 100644 --- a/packages/sea.ns1.grapheneos.org +++ b/packages/sea.ns1.grapheneos.org @@ -40,4 +40,3 @@ tree unbound xfsprogs yaml-cpp -zerotier-one diff --git a/packages/sin.ns1.grapheneos.org b/packages/sin.ns1.grapheneos.org index 9a5446e..a6acd57 100644 --- a/packages/sin.ns1.grapheneos.org +++ b/packages/sin.ns1.grapheneos.org @@ -40,4 +40,3 @@ tree unbound xfsprogs yaml-cpp -zerotier-one diff --git a/packages/syd.ns1.grapheneos.org b/packages/syd.ns1.grapheneos.org index 9a5446e..a6acd57 100644 --- a/packages/syd.ns1.grapheneos.org +++ b/packages/syd.ns1.grapheneos.org @@ -40,4 +40,3 @@ tree unbound xfsprogs yaml-cpp -zerotier-one diff --git a/packages/tyo.ns1.grapheneos.org b/packages/tyo.ns1.grapheneos.org index 9a5446e..a6acd57 100644 --- a/packages/tyo.ns1.grapheneos.org +++ b/packages/tyo.ns1.grapheneos.org @@ -40,4 +40,3 @@ tree unbound xfsprogs yaml-cpp -zerotier-one