6960477cc2
Don't limit iptables connection tracking to TCP protocol; allow connection tracking for all protocols. This allows services like NTP, which is UDP-based, to receive replies from an NTP server even if the port is blocked, as long as it is in reply to a request sent from the device itself. |
||
---|---|---|
.. | ||
caclmgrd | ||
caclmgrd.service |