diff --git a/nftables-ns1.conf b/nftables-ns1.conf index c3c3264..aa6c9f4 100644 --- a/nftables-ns1.conf +++ b/nftables-ns1.conf @@ -100,7 +100,7 @@ table inet filter { skuid { chrony, geoipupdate } meta l4proto { tcp, udp } th sport >= 1024 th dport 53 accept skuid powerdns meta l4proto tcp th sport 54 th dport >= 1024 accept - skuid http meta l4proto { tcp, udp } th sport >= 1024 th dport 54 accept + skuid http meta l4proto tcp th sport >= 1024 th dport 54 accept skuid powerdns meta l4proto tcp th sport 81 th dport >= 1024 accept diff --git a/nftables-ns2.conf b/nftables-ns2.conf index b57e578..954035f 100644 --- a/nftables-ns2.conf +++ b/nftables-ns2.conf @@ -105,7 +105,7 @@ table inet filter { skuid { chrony, geoipupdate } meta l4proto { tcp, udp } th sport >= 1024 th dport 53 accept skuid powerdns meta l4proto tcp th sport 54 th dport >= 1024 accept - skuid http meta l4proto { tcp, udp } th sport >= 1024 th dport 54 accept + skuid http meta l4proto tcp th sport >= 1024 th dport 54 accept skuid powerdns meta l4proto tcp th sport 81 th dport >= 1024 accept