Alan Orth
9bba0d96bb
I will try using nftables directly instead of via firewalld as of Debian 11 as it is the replacement for the iptables/ipset stack in recent years and is easier to work with. This also includes a systemd service, timer, and script to update the spamhaus DROP lists as nftables sets. Still need to add fail2ban support. |
||
---|---|---|
.. | ||
etc | ||
ssh-pub-keys | ||
abusers-ipv4.xml | ||
abusers-ipv6.xml | ||
aggregate-cidr-addresses.pl | ||
spamhaus-ipv4.nft | ||
spamhaus-ipv4.xml | ||
spamhaus-ipv6.nft | ||
spamhaus-ipv6.xml | ||
tarsnaprc | ||
update-spamhaus-lists.service | ||
update-spamhaus-lists.sh | ||
update-spamhaus-lists.timer | ||
update-spamhaus-nftables.service | ||
update-spamhaus-nftables.sh | ||
update-spamhaus-nftables.timer |