From 16eb4d7e0f86440d11a68f59d79611283736d740 Mon Sep 17 00:00:00 2001 From: Christoph Date: Thu, 15 Jan 2026 01:37:46 +0100 Subject: [PATCH] ip6t-firewall-server: remove rule ' -t mangle -A PREROUTING -m conntrack --ctstate INVALID -j DROP'. --- ip6t-firewall-server | 16 +++++++++++----- 1 file changed, 11 insertions(+), 5 deletions(-) diff --git a/ip6t-firewall-server b/ip6t-firewall-server index b9fb770..5cb146f 100755 --- a/ip6t-firewall-server +++ b/ip6t-firewall-server @@ -630,11 +630,17 @@ echo -e "\t\033[37m\033[1mProtections against several attacks / unwanted package # - Drop invalid packets # --- echononl "\tDrop invalid packets" -if $log_invalid_packets || $log_all ; then - $ip6t -t mangle -A PREROUTING -m conntrack --ctstate INVALID -j $LOG_TARGET $tag_log_prefix "$log_prefix Invalid packets:" -fi -$ip6t -t mangle -A PREROUTING -m conntrack --ctstate INVALID -j DROP -echo_done + +# --- +# Ersatzlos gestrichen +# --- +echo_skipped + +#if $log_invalid_packets || $log_all ; then +# $ip6t -t mangle -A PREROUTING -m conntrack --ctstate INVALID -j $LOG_TARGET $tag_log_prefix "$log_prefix Invalid packets:" +#fi +#$ip6t -t mangle -A PREROUTING -m conntrack --ctstate INVALID -j DROP +#echo_done # ---