Expand description
Host firewall helpers for FIPS mesh TUN interfaces.
This module intentionally owns only narrowly scoped rules for one mesh interface. The policy is default-deny for FIPS-addressed inbound traffic and outbound traffic, with stateful outbound TCP allowed and optional inbound TCP service ports.
Structs§
- Host
Firewall Config - Platform firewall configuration for a FIPS host-facing TUN interface.
- Host
Firewall Guard - RAII guard for installed host firewall rules.
Enums§
- Host
Firewall Error - Errors returned while installing platform firewall rules.
Constants§
- FIPS_
MESH_ IPV6_ PREFIX - The IPv6 prefix used by FIPS mesh addresses.