feat: add coturn to matrix
This commit is contained in:
parent
8451acdd8f
commit
709af80e73
6 changed files with 174 additions and 98 deletions
|
|
@ -74,6 +74,9 @@
|
|||
# Allow returning traffic from wan and drop everthing else
|
||||
iifname "wan" ct state { established, related } accept comment "Allow established traffic"
|
||||
iifname "wan" icmp type { echo-request, destination-unreachable, time-exceeded } counter accept comment "Allow select ICMP"
|
||||
iifname "wan" udp dport { 3478, 5349 } counter accept comment "TURN/STUN UDP"
|
||||
iifname "wan" tcp dport { 3478, 5349 } counter accept comment "TURN/STUN TCP + TURNS/TLS"
|
||||
iifname "wan" udp dport { 49152-49999 } counter accept comment "TURN relay UDP range"
|
||||
iifname "wan" counter drop comment "Drop all other unsolicited traffic from wan"
|
||||
|
||||
limit rate 60/minute burst 100 packets log prefix "Input - Drop: " comment "Log any unmatched traffic"
|
||||
|
|
|
|||
Loading…
Add table
Add a link
Reference in a new issue