[CentOS] OpenVPN & nftables

Sat Nov 20 11:02:37 UTC 2021
lejeczek <peljasz at yahoo.co.uk>

Hi guys.

On CentOS Stream 8 with 4.18.0-348.el8.x86_64, I cannot get 
openvpn-2.4.11-1.el8.x86_64 with help of 'nftables' to allow 
certain traffic to get in.
When OpenVPN does not use 'client-to-client' it is then 
supposed to pass to 'nftables' & let it handle all the traffic.

I'm doing something trivial - put 'tun0' iface into 
'trusted' zone and add 'forward' but vpn connected clients 
cannot talk to each other.
I also fiddle with 'direct' rules but to no avail and I hope 
some Centosians have that already figured out and can advise.

many thanks, L.