Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

option to skip creating default rule to subnet when using ip4table / ip6table #12

Open
rhjdvsgsgks opened this issue Oct 2, 2023 · 0 comments

Comments

@rhjdvsgsgks
Copy link

hi

im setting up a vpn to pass all traffic trough it. to do that, im using ip4table and ip6table to create a route table for vpn outbound on wan only. and kept default route table have only vpn route.

but netifd will create route rule 10000 (local addresses as source) and 20000 (local subnets as destination) to the interface which using ip4/6table. and that make my traffic directly passed to wan without going through vpn when accessing address on wan subnet. which is not intended

i know the purpose of these rule is make subnet able to access even it not on the default route table. but it broke my custom rule and decreased flexibility. could you add a option to disable that? just like nohostroute option for wireguard

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

No branches or pull requests

1 participant