Skip to content

nftables: DNS rules #49637

@robmry

Description

@robmry

Description

Some iptables rules are created in the container's network namespace to make moby's internal DNS resolver accessible from containers (without binding to well known ports in the container's netns, in case the container runs its own resolver).

Translate those rules to use nftables.

Metadata

Metadata

Assignees

Labels

area/networkingNetworkingarea/networking/firewallingNetworkingkind/featureFunctionality or other elements that the project doesn't currently have. Features are new and shiny

Type

Projects

Milestone

No milestone

Relationships

None yet

Development

No branches or pull requests

Issue actions