Hi
Is there any document for vyos’s firewall.
I am confused about some chains or rules, like this one:
chain VYOS_FRAG_MARK {
type filter hook prerouting priority -450; policy accept;
ip frag-off & 16383 != 0 meta mark set 0x000ffff1 return
}
- when the chain will be used?
- why this chain use so much mark bits?