I'm trying to set up fwknop to open port 22 and set up firewall rule to forward to an IP on the LAN
I cannot get the fwknopd config right.
What am I missing/doing wrong?
This are my config files:
FIREWD_FORWARD_ACCESS ACCEPT, filter, FORWARD, 1, FWKNOP_FORWARD, 1;
client ~/.fwknoprc :
have you stopped sshd / dropbear ?
port 22 is usually used by it ...
What version of openwrt are you using? fwknop is not compatible with firewall4 which ships with 22.03
There seems to be a workaround
05:49AM - 06 Oct 21 UTC
Hi all, especially @openwrt/packages-write,
for the next OpenWrt release `fir
Thanks for quick replies!
frollic: thanks for the tip, I've changed dropbear port now
d687r02j8g: It is version 22.03. The workaround you speak off, that would be installing iptables-nft, am I correct?
Sorry, I don't know. I just pasted the link after a Google search!
Looks like fwknop just don't work with nftables, no workaround to be found apart from rolling system back to some earlier version without nftables.
I think I may have figured out how to get it working alongside nftables without extra scripts. If you install
kmod-ipt-nat and kmod-ipt-nat-extra, along with luci-app-fwknopd out of the box, the forwarding rules work correctly.