4 if ! diff -q /etc/nftables.conf nftables-workstation.nft > /dev/null; \
6 sudo cp nftables-workstation.nft /etc/nftables.conf; \
7 sudo etckeeper vcs commit -m "nftables.conf: import latest upstream config" -- nftables.conf; \
9 for ipt in iptables ip6tables; \
13 for chain in INPUT OUTPUT FORWARD;\
15 sudo $$ipt -P $$chain ACCEPT; \
18 sudo systemctl restart nftables.service