From 6287786bd3f42a86d9073c44aa7b39d6b8089e24 Mon Sep 17 00:00:00 2001 From: GoEdgeLab Date: Sat, 1 Apr 2023 15:55:24 +0800 Subject: [PATCH] =?UTF-8?q?=E5=88=9B=E5=BB=BAnftables=E8=A7=84=E5=88=99?= =?UTF-8?q?=E6=97=B6=EF=BC=8C=E4=BD=BF=E7=94=A8REJECT=E4=BB=A3=E6=9B=BFDRO?= =?UTF-8?q?P?= MIME-Version: 1.0 Content-Type: text/plain; charset=UTF-8 Content-Transfer-Encoding: 8bit --- internal/firewalls/firewall_nftables.go | 4 ++-- 1 file changed, 2 insertions(+), 2 deletions(-) diff --git a/internal/firewalls/firewall_nftables.go b/internal/firewalls/firewall_nftables.go index 33bc688..66d085a 100644 --- a/internal/firewalls/firewall_nftables.go +++ b/internal/firewalls/firewall_nftables.go @@ -235,13 +235,13 @@ func (this *NFTablesFirewall) init() error { if setAction == "allow" { rule, err = chain.AddAcceptIPv4SetRule(setName, ruleName) } else { - rule, err = chain.AddDropIPv4SetRule(setName, ruleName) + rule, err = chain.AddRejectIPv4SetRule(setName, ruleName) } } else if tableDef.IsIPv6 { if setAction == "allow" { rule, err = chain.AddAcceptIPv6SetRule(setName, ruleName) } else { - rule, err = chain.AddDropIPv6SetRule(setName, ruleName) + rule, err = chain.AddRejectIPv6SetRule(setName, ruleName) } } if err != nil {