Previously, the ssh connection got stuck when first loading the nftables ruleset. I now found the reason for this: conntrack was not active before loading the ruleset, so there was no conntrack entry for the ssh connection. This means the traffic was not matched by 'ct state established', and the other output rules did not allow the traffic. To fix this, we can load a ruleset at boot which uses conntrack; this ensures that conntrack is already enabled when loading the actual ruleset over ssh. |
||
---|---|---|
contestops | ||
os | ||
.gitignore | ||
LICENSE.txt | ||
readme.md |
readme.md
SOI OS
Folder os
contains the scripts and files for building custom OS images based on Debian for training and contests.
Folder contestops
contains various scripts and files for administrating contests where contestants use this OS.