]> git.proxmox.com Git - pve-docs.git/blame - pve-firewall-host-opts.adoc
d/copyright: update years
[pve-docs.git] / pve-firewall-host-opts.adoc
CommitLineData
013dc89f 1`enable`: `<boolean>` ::
888c4116
DM
2
3Enable host firewall rules.
4
013dc89f 5`log_level_in`: `<alert | crit | debug | emerg | err | info | nolog | notice | warning>` ::
888c4116
DM
6
7Log level for incoming traffic.
8
013dc89f 9`log_level_out`: `<alert | crit | debug | emerg | err | info | nolog | notice | warning>` ::
888c4116
DM
10
11Log level for outgoing traffic.
12
95895385
TL
13`log_nf_conntrack`: `<boolean>` ('default =' `0`)::
14
15Enable logging of conntrack information.
16
013dc89f 17`ndp`: `<boolean>` ::
888c4116
DM
18
19Enable NDP.
20
5f26e15b
TL
21`nf_conntrack_allow_invalid`: `<boolean>` ('default =' `0`)::
22
23Allow invalid packets on connection tracking.
24
013dc89f 25`nf_conntrack_max`: `<integer> (32768 - N)` ::
888c4116
DM
26
27Maximum number of tracked connections.
28
013dc89f 29`nf_conntrack_tcp_timeout_established`: `<integer> (7875 - N)` ::
888c4116
DM
30
31Conntrack established timeout.
32
013dc89f 33`nosmurfs`: `<boolean>` ::
888c4116
DM
34
35Enable SMURFS filter.
36
013dc89f 37`smurf_log_level`: `<alert | crit | debug | emerg | err | info | nolog | notice | warning>` ::
888c4116
DM
38
39Log level for SMURFS filter.
40
013dc89f 41`tcp_flags_log_level`: `<alert | crit | debug | emerg | err | info | nolog | notice | warning>` ::
888c4116
DM
42
43Log level for illegal tcp flags filter.
44
013dc89f 45`tcpflags`: `<boolean>` ::
888c4116
DM
46
47Filter illegal combinations of TCP flags.
48