From 2de354e482a4b8be33ff655058e4b851b82ad01f Mon Sep 17 00:00:00 2001 From: Daniel Date: Fri, 14 Aug 2020 11:25:16 +0200 Subject: [PATCH] Fix IPv6 to local redirects --- firewall/interception/nfqueue_linux.go | 8 ++++---- 1 file changed, 4 insertions(+), 4 deletions(-) diff --git a/firewall/interception/nfqueue_linux.go b/firewall/interception/nfqueue_linux.go index 409a6e73..7868d640 100644 --- a/firewall/interception/nfqueue_linux.go +++ b/firewall/interception/nfqueue_linux.go @@ -115,10 +115,10 @@ func init() { "mangle INPUT -j C171", "filter OUTPUT -j C17", "filter INPUT -j C17", - "nat OUTPUT -m mark --mark 1799 -p udp -j DNAT --to [fd17::17]:53", - "nat OUTPUT -m mark --mark 1717 -p tcp -j DNAT --to [fd17::17]:717", - "nat OUTPUT -m mark --mark 1717 -p udp -j DNAT --to [fd17::17]:717", - // "nat OUTPUT -m mark --mark 1717 ! -p tcp ! -p udp -j DNAT --to [fd17::17]", + "nat OUTPUT -m mark --mark 1799 -p udp -j DNAT --to [::1]:53", + "nat OUTPUT -m mark --mark 1717 -p tcp -j DNAT --to [::1]:717", + "nat OUTPUT -m mark --mark 1717 -p udp -j DNAT --to [::1]:717", + // "nat OUTPUT -m mark --mark 1717 ! -p tcp ! -p udp -j DNAT --to [::1]", } // Reverse because we'd like to insert in a loop