Skip to content

Commit 7d73503

Browse files
add iptabl rules
1 parent 404fbd3 commit 7d73503

File tree

1 file changed

+13
-0
lines changed

1 file changed

+13
-0
lines changed

jail/linux.go

Lines changed: 13 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -214,6 +214,19 @@ func (l *LinuxJail) setupIptables() error {
214214
return fmt.Errorf("failed to add comprehensive TCP redirect rule: %v", err)
215215
}
216216

217+
// TODO: clean up this rules
218+
cmd = exec.Command("iptables", "-A", "FORWARD", "-s", "192.168.100.0/24", "-j", "ACCEPT")
219+
err = cmd.Run()
220+
if err != nil {
221+
return err
222+
}
223+
224+
cmd = exec.Command("iptables", "-A", "FORWARD", "-d", "192.168.100.0/24", "-j", "ACCEPT")
225+
err = cmd.Run()
226+
if err != nil {
227+
return err
228+
}
229+
217230
l.logger.Debug("Comprehensive TCP boundarying enabled", "interface", l.vethHost, "proxy_port", l.httpProxyPort)
218231
return nil
219232
}

0 commit comments

Comments
 (0)