diff --git a/hosts/fw.cloonar.com/modules/firewall.nix b/hosts/fw.cloonar.com/modules/firewall.nix index 72680fc..0a23184 100644 --- a/hosts/fw.cloonar.com/modules/firewall.nix +++ b/hosts/fw.cloonar.com/modules/firewall.nix @@ -157,7 +157,7 @@ # iifname "multimedia" ip saddr udp dport { mdns, llmnr } counter accept # Accept web to git server - iifname "wan" oifname "server" tcp dst 10.42.97.50 dport { 22, 80, 443 } counter accept + iifname "wan" oifname "server" ip daddr 10.42.97.50 tcp dport { 22, 80, 443 } counter accept # Allow returning traffic from wg_cloonar and drop everthing else iifname "wg_cloonar" ct state { established, related } counter accept