graphene-os-server-infrastr.../etc/nftables
Daniel Micay 41174c2a08 clean inbound DSCP
This avoids setting outbound DSCP for echo-reply, TCP RST for TCP
sockets in the Time-Wait state and potentially other cases. We don't
want it to be possible for inbound packets to determine our outbound
traffic classification even to a small extent.
2025-09-01 19:35:47 -04:00
..
nftables-attestation.conf clean inbound DSCP 2025-09-01 19:35:47 -04:00
nftables-discuss.conf clean inbound DSCP 2025-09-01 19:35:47 -04:00
nftables-mail.conf clean inbound DSCP 2025-09-01 19:35:47 -04:00
nftables-matrix.conf clean inbound DSCP 2025-09-01 19:35:47 -04:00
nftables-network.conf clean inbound DSCP 2025-09-01 19:35:47 -04:00
nftables-ns1.conf clean inbound DSCP 2025-09-01 19:35:47 -04:00
nftables-ns2.conf clean inbound DSCP 2025-09-01 19:35:47 -04:00
nftables-social.conf clean inbound DSCP 2025-09-01 19:35:47 -04:00
nftables-web.conf clean inbound DSCP 2025-09-01 19:35:47 -04:00