-
Notifications
You must be signed in to change notification settings - Fork 18.9k
nftables: DNS rules #49637
Copy link
Copy link
Closed
Labels
area/networkingNetworkingNetworkingarea/networking/firewallingNetworkingNetworkingkind/featureFunctionality or other elements that the project doesn't currently have. Features are new and shinyFunctionality or other elements that the project doesn't currently have. Features are new and shiny
Description
Description
Some iptables rules are created in the container's network namespace to make moby's internal DNS resolver accessible from containers (without binding to well known ports in the container's netns, in case the container runs its own resolver).
Translate those rules to use nftables.
Reactions are currently unavailable
Metadata
Metadata
Assignees
Labels
area/networkingNetworkingNetworkingarea/networking/firewallingNetworkingNetworkingkind/featureFunctionality or other elements that the project doesn't currently have. Features are new and shinyFunctionality or other elements that the project doesn't currently have. Features are new and shiny