fix: output rules

This commit is contained in:
root
2026-04-15 00:17:45 +04:00
parent b78e53ee23
commit b0c53fb678
+2 -2
View File
@@ -129,11 +129,11 @@ _nft_init() {
_log "$TABLE: setting up base chains" "debug"
nft add chain ip "$TABLE" prerouting { type filter hook prerouting priority mangle \; policy accept \; } 2>/dev/null
nft flush chain ip "$TABLE" prerouting
nft add rule ip "$TABLE" prerouting fib daddr type local accept
nft add rule ip "$TABLE" prerouting fib daddr type local accept 2>/dev/null
nft add chain ip "$TABLE" output { type route hook output priority -150 \; policy accept \; } 2>/dev/null
nft flush chain ip "$TABLE" output
nft add rule ip "$TABLE" output fib daddr type local accept
nft add rule ip "$TABLE" output fib daddr type local accept 2>/dev/null
local mark_hex=$(printf '0x%x' "$TPROXY_MARK")
_log "route: configuring table $RT_TABLE, mark $mark_hex" "debug"