minor fix for mangle tables in entrypoint.sh

This commit is contained in:
Антон
2026-02-07 22:10:27 +03:00
parent 8fd44fc658
commit f7fe266571

View File

@@ -11,11 +11,11 @@ fi
# sysctl -w net.ipv4.ip_forward=1 || true # sysctl -w net.ipv4.ip_forward=1 || true
# NAT MASQUERADE # NAT MASQUERADE
iptables -t nat -A POSTROUTING -i tun* -o eth0 -j MASQUERADE iptables -t nat -A POSTROUTING -o eth0 -j MASQUERADE
# MSS Clamping (Path MTU Tuning) # MSS Clamping (Path MTU Tuning)
iptables -t mangle -A FORWARD -i tun* -o eth0-p tcp --tcp-flags SYN,RST SYN -j TCPMSS --clamp-mss-to-pmtu iptables -t mangle -A FORWARD -o eth0 -p tcp --tcp-flags SYN,RST SYN -j TCPMSS --clamp-mss-to-pmtu
iptables -t mangle -A FORWARD -o tun* -i eth0-p tcp --tcp-flags SYN,RST SYN -j TCPMSS --clamp-mss-to-pmtu iptables -t mangle -A FORWARD -i eth0 -p tcp --tcp-flags SYN,RST SYN -j TCPMSS --clamp-mss-to-pmtu
# Ensure /run exists for PID files # Ensure /run exists for PID files
mkdir -p /run mkdir -p /run