Dennis van Dok
3bee76dcd6
add the option to specify the family per rule to support ipv6 ( #3 )
Closes : #2
* add the option to specify the family per rule to support ipv6
* include policy updates for ipv6
* update documentation to mention ipv6
* Make ipv6 optional; remove spurious tabs from the readme.
* set ipv6 policies only if ipv6 is enabled on the host and not explicitly turned off for this service
7 anni fa
Filip Pytloun
23030090ac
Fix service name for xenial and newer distributions using netfilter
8 anni fa
Filip Pytloun
6006256763
Fix documentation, remove obsolete
8 anni fa
Filip Pytloun
9540426989
Allow using to-port option
8 anni fa
Filip Pytloun
8e8389246f
Allow setting iptables by support metadata
8 anni fa
Filip Pytloun
cb65f8a096
Refactor to allow both explicit position and append
8 anni fa
Filip Pytloun
bd5d136886
Fix iptables insert vs. append, enhance iptables disabling
8 anni fa
Filip Pytloun
21c93fb4e5
Don't set policy if rules failed
8 anni fa
Adam Tengler
cf977c62f0
to_source parameter added
9 anni fa
Alena Holanova
5dcd673814
Add support metadata
9 anni fa
Filip Pytloun
79d520802f
Policy requires table argument (but default should be filter)
9 anni fa
Filip Pytloun
9dc2a1a4fa
Allow setting iptables chain policy
9 anni fa
Filip Pytloun
ab43e7b3a6
Initial commit
9 anni fa