blob: 897c82b5f95c66e582df3fefa0cd5c0e25af2bc6 (
plain)
1
2
3
4
5
6
7
8
|
iptables-translate -A INPUT -p 51 -m ah --ahspi 500 -j DROP
nft 'add rule ip filter INPUT ah spi 500 counter drop'
iptables-translate -A INPUT -p 51 -m ah --ahspi 500:600 -j DROP
nft 'add rule ip filter INPUT ah spi 500-600 counter drop'
iptables-translate -A INPUT -p 51 -m ah ! --ahspi 50 -j DROP
nft 'add rule ip filter INPUT ah spi != 50 counter drop'
|