From 9ad20a88feded9fdd64f5589ca49cd64570d7591 Mon Sep 17 00:00:00 2001 From: quindecim Date: Fri, 15 May 2020 13:53:48 -0400 Subject: [PATCH] DROP IPv6 queries properly --- post-fs-data.sh | 5 ++--- 1 file changed, 2 insertions(+), 3 deletions(-) diff --git a/post-fs-data.sh b/post-fs-data.sh index 9b52c9a..a3962ad 100644 --- a/post-fs-data.sh +++ b/post-fs-data.sh @@ -10,7 +10,6 @@ MODDIR=${0%/*} iptables -t nat -A OUTPUT -p tcp ! -d 91.239.100.100 --dport 53 -j DNAT --to-destination 127.0.0.1:5354 iptables -t nat -A OUTPUT -p udp ! -d 91.239.100.100 --dport 53 -j DNAT --to-destination 127.0.0.1:5354 -ip6tables -P INPUT DROP -ip6tables -P FORWARD DROP -ip6tables -P OUTPUT DROP +ip6tables -A OUTPUT -p tcp -j DROP +ip6tables -A OUTPUT -p udp -j DROP