[PR #1305] Fix/acl for forward #3070

Open
opened 2025-11-20 08:04:51 -05:00 by saavagebueno · 0 comments
Owner

Original Pull Request: https://github.com/netbirdio/netbird/pull/1305

State: closed
Merged: Yes


Describe your changes

Enforce the ACL rules for routed traffic.

Because under the hood the firewall rules depend from the route rules the two logic has been merged into the firewall package.

  • fix cleanup routine in iptables and nftables
  • refactor the nftables/iptables logic. (start to use prerouting and mangle table)
  • remove IPv6 related codes because it is unused
  • remove unused codes, variables, structures

Checklist

  • Is it a bug fix
  • Is a typo/documentation fix
  • Is a feature enhancement
  • It is a refactor
  • Created tests that fail without the change (if possible)
  • Extended the README / documentation, if necessary
**Original Pull Request:** https://github.com/netbirdio/netbird/pull/1305 **State:** closed **Merged:** Yes --- ## Describe your changes Enforce the ACL rules for routed traffic. Because under the hood the firewall rules depend from the route rules the two logic has been merged into the firewall package. - fix cleanup routine in iptables and nftables - refactor the nftables/iptables logic. (start to use prerouting and mangle table) - remove IPv6 related codes because it is unused - remove unused codes, variables, structures ## Issue ticket number and link ### Checklist - [x] Is it a bug fix - [ ] Is a typo/documentation fix - [ ] Is a feature enhancement - [x] It is a refactor - [ ] Created tests that fail without the change (if possible) - [ ] Extended the README / documentation, if necessary
saavagebueno added the pull-request label 2025-11-20 08:04:51 -05:00
Sign in to join this conversation.
1 Participants
Notifications
Due Date
No due date set.
Dependencies

No dependencies set.

Reference: SVI/netbird#3070