fwknop icon indicating copy to clipboard operation
fwknop copied to clipboard

Cell network natting breaks function of fwknop, customize rules?

Open mgaulton opened this issue 1 year ago • 0 comments

Hi There, I'm trying to get this configured specifically for ssh right now and running into a weird issue. I have a fairly indepth firewall and discovered that no packets make it to the FWKNPT_INPUT chain after auth is successful and the rule is created. Watching logs while no firewall shows that the SPA comes from one IP address, the ssh session a different IP in the same /16 network as far as I can tell. Wondering if there is a way to customize the created rule so that it allows the /16 temporarily or another mechanism to handle this scenario. Thank you!

mgaulton avatar Apr 04 '24 17:04 mgaulton