From 38be6c13f76e893cf47636257071b440dec0c5b2 Mon Sep 17 00:00:00 2001 From: Robert Günzler Date: Sun, 7 Sep 2025 17:32:13 +0200 Subject: initial commit MIME-Version: 1.0 Content-Type: text/plain; charset=UTF-8 Content-Transfer-Encoding: 8bit Signed-off-by: Robert Günzler --- bundles/firewall/files/etc/nftables.d/22-ssh.nft | 10 ++++++++++ 1 file changed, 10 insertions(+) create mode 100644 bundles/firewall/files/etc/nftables.d/22-ssh.nft (limited to 'bundles/firewall/files/etc/nftables.d/22-ssh.nft') diff --git a/bundles/firewall/files/etc/nftables.d/22-ssh.nft b/bundles/firewall/files/etc/nftables.d/22-ssh.nft new file mode 100644 index 0000000..c8c91a1 --- /dev/null +++ b/bundles/firewall/files/etc/nftables.d/22-ssh.nft @@ -0,0 +1,10 @@ +#!/bin/nft -f +# vim: set ts=4 sw=4: +table inet filter { + + chain my_filter { + tcp dport { ${node.metadata.get("ssh/port", 22)} } accept \ + comment "Accept SSH traffic" + } + +} -- cgit 1.4.1