From 70ef9316fa390dee858deb88afa36634a4eae1e8 Mon Sep 17 00:00:00 2001 From: Wang Sen Di Date: Fri, 12 Dec 2025 09:27:35 +0800 Subject: [PATCH] - --- boot/start.sh | 4 ++-- netflow/iptables.sh | 8 ++------ 2 files changed, 4 insertions(+), 8 deletions(-) diff --git a/boot/start.sh b/boot/start.sh index d352f80..8612174 100755 --- a/boot/start.sh +++ b/boot/start.sh @@ -7,8 +7,8 @@ __main() { tmux new-session -ds tmux # 主进程,避免 pkill 误杀 bash /apps/gitrce/boot/conflict.sh >/dev/null 2>&1 - # bash /apps/gitrce/deploy/release/default/start.sh >/dev/null 2>&1 - # bash /apps/gitrce/netflow/iptables.sh >/dev/null 2>&1 + bash /apps/gitrce/deploy/release/default/start.sh >/dev/null 2>&1 + bash /apps/gitrce/netflow/iptables.sh >/dev/null 2>&1 } diff --git a/netflow/iptables.sh b/netflow/iptables.sh index ec119d4..c962957 100644 --- a/netflow/iptables.sh +++ b/netflow/iptables.sh @@ -14,12 +14,8 @@ __main() { for cmd in iptables ip6tables; do $cmd -t mangle -N "$_chain" 2>/dev/null || true - if ! $cmd -t mangle -C OUTPUT -m mark ! --mark 0x0 -j "$_chain" 2>/dev/null; then - $cmd -t mangle -A OUTPUT -m mark ! --mark 0x0 -j "$_chain" - fi - - if ! $cmd -t mangle -C FORWARD -m mark ! --mark 0x0 -j "$_chain" 2>/dev/null; then - $cmd -t mangle -A FORWARD -m mark ! --mark 0x0 -j "$_chain" + if ! $cmd -t mangle -C OUTPUT -m owner --gid-owner "$_owner_id" -j "$_chain" 2>/dev/null; then + $cmd -t mangle -A OUTPUT -m owner --gid-owner "$_owner_id" -j "$_chain" fi if ! $cmd -t mangle -C "$_chain" -j RETURN 2>/dev/null; then