Hello to Yunohost team and all users,
First of, i want to say a great thank you to all the people behind Yunohost. You made a great job doing this and i hope it’ll keep increasing in greatness as it did until now.
My YunoHost server
Hardware: Dedicated computer
YunoHost version:
I have access to my server : Through SSH | through the webadmin
Are you in a special context or did you perform some particular tweaking on your YunoHost instance ? : yes
If yes, please explain: My Yunohost server is in a DMZ in the configuration of my internet box.
Description of my issue
I’d like to adjust the firewall rules to something more secure. For example i’d like to limit access to some ports only to my LAN. As my server is opened to the world because of the DMZ, i want to adjust more precisely the rules of nftables used by Yunohost. The webadmin possibilities are too scarce.
On a previous version of Yunohost (not sure which one, but a month ago it was fine) the tip i found on this forum was working. It was to add a file in /etc/yunohost/hooks.d/post_iptables_rules/ containing the rules i wanted and they were automatically added after a reload of the Yunohost’s firewall. Now it’s not working anymore.
I tried to manually add the rules via iptables command and they can be seen in the result of “nft list ruleset” command.
