From b522759457e888412f16786ada0c401c24465857 Mon Sep 17 00:00:00 2001 From: quindecim Date: Thu, 14 May 2020 10:21:53 -0400 Subject: [PATCH] DROP every IPv6 queries --- post-fs-data.sh | 5 +++-- 1 file changed, 3 insertions(+), 2 deletions(-) diff --git a/post-fs-data.sh b/post-fs-data.sh index 0fba57f..9b52c9a 100644 --- a/post-fs-data.sh +++ b/post-fs-data.sh @@ -10,6 +10,7 @@ MODDIR=${0%/*} iptables -t nat -A OUTPUT -p tcp ! -d 91.239.100.100 --dport 53 -j DNAT --to-destination 127.0.0.1:5354 iptables -t nat -A OUTPUT -p udp ! -d 91.239.100.100 --dport 53 -j DNAT --to-destination 127.0.0.1:5354 -ip6tables -A OUTPUT -p tcp --dport 53 -j DROP -ip6tables -A OUTPUT -p udp --dport 53 -j DROP +ip6tables -P INPUT DROP +ip6tables -P FORWARD DROP +ip6tables -P OUTPUT DROP