}
chain output-net {
tcp dport { http, https } counter accept comment "HTTP"
+ log prefix "calyx: output-net: " counter drop
}
chain output {
ip daddr 10.0.0.0/8 counter goto output-lan
ip daddr 192.168.0.0/16 counter goto output-lan
ip daddr 224.0.0.0/3 counter goto output-lan
jump output-net
- log prefix "calyx: output-net: " counter drop
+ log prefix "calyx: output: " counter drop
}
}
'';