I would really appreciate it if someone would double check me. Sorry for the screenshot. Either the Lemmy code button isn’t great or I’m just dum at formatting.
This has local *arr servers available and traceroute shows me going through the VPN.
The largest blue blotch is the ip address of a mullvad vpn server.
Rpi4, Raspberry Pi OS lite.
Mullvad VPN. IPv6 has been nuked. Using Wireguard through wg-quick.
wg2 originates from a .conf file from Mullvad with IPv6 stripped.
Do these UFW settings look right?
I’m stripping ipv6 because I’m ignorant on a lot of this and a lot people say it’s bad and show how to strip it. I’m a script kiddie in a old guys body.
I ran both
iptables-save
andnft list ruleset
but, the output was so offensively formatted when inserted into Lemmy, I’ll wait until I’ve had some sleep to try and get it legible.Right, fail safe is the concern, I couldn’t get the kill switch to work so I started monkeying with UFW.