diff --git a/etc/modprobe.d/FCOS-VM-blacklist.conf b/etc/modprobe.d/FCOS-VM-blacklist.conf index 5f95db5..ef9f2b4 100644 --- a/etc/modprobe.d/FCOS-VM-blacklist.conf +++ b/etc/modprobe.d/FCOS-VM-blacklist.conf @@ -7,6 +7,8 @@ # nftable # ebtables # iptables +# ip6tables +# xtables blacklist qaic install qaic /bin/false @@ -8090,40 +8092,6 @@ blacklist xfrm6_tunnel install xfrm6_tunnel /bin/false blacklist ila install ila /bin/false -blacklist ip6t_NPT -install ip6t_NPT /bin/false -blacklist ip6t_REJECT -install ip6t_REJECT /bin/false -blacklist ip6t_SYNPROXY -install ip6t_SYNPROXY /bin/false -blacklist ip6t_ah -install ip6t_ah /bin/false -blacklist ip6t_eui64 -install ip6t_eui64 /bin/false -blacklist ip6t_frag -install ip6t_frag /bin/false -blacklist ip6t_hbh -install ip6t_hbh /bin/false -blacklist ip6t_ipv6header -install ip6t_ipv6header /bin/false -blacklist ip6t_mh -install ip6t_mh /bin/false -blacklist ip6t_rpfilter -install ip6t_rpfilter /bin/false -blacklist ip6t_rt -install ip6t_rt /bin/false -blacklist ip6t_srh -install ip6t_srh /bin/false -blacklist ip6table_filter -install ip6table_filter /bin/false -blacklist ip6table_mangle -install ip6table_mangle /bin/false -blacklist ip6table_nat -install ip6table_nat /bin/false -blacklist ip6table_raw -install ip6table_raw /bin/false -blacklist ip6table_security -install ip6table_security /bin/false blacklist kcm install kcm /bin/false blacklist af_key @@ -8146,148 +8114,6 @@ blacklist mpls_iptunnel install mpls_iptunnel /bin/false blacklist mpls_router install mpls_router /bin/false -blacklist xt_AUDIT -install xt_AUDIT /bin/false -blacklist xt_CHECKSUM -install xt_CHECKSUM /bin/false -blacklist xt_CLASSIFY -install xt_CLASSIFY /bin/false -blacklist xt_CONNSECMARK -install xt_CONNSECMARK /bin/false -blacklist xt_CT -install xt_CT /bin/false -blacklist xt_DSCP -install xt_DSCP /bin/false -blacklist xt_HL -install xt_HL /bin/false -blacklist xt_HMARK -install xt_HMARK /bin/false -blacklist xt_IDLETIMER -install xt_IDLETIMER /bin/false -blacklist xt_LED -install xt_LED /bin/false -blacklist xt_LOG -install xt_LOG /bin/false -blacklist xt_MASQUERADE -install xt_MASQUERADE /bin/false -blacklist xt_NETMAP -install xt_NETMAP /bin/false -blacklist xt_NFLOG -install xt_NFLOG /bin/false -blacklist xt_NFQUEUE -install xt_NFQUEUE /bin/false -blacklist xt_RATEEST -install xt_RATEEST /bin/false -blacklist xt_REDIRECT -install xt_REDIRECT /bin/false -blacklist xt_SECMARK -install xt_SECMARK /bin/false -blacklist xt_TCPMSS -install xt_TCPMSS /bin/false -blacklist xt_TCPOPTSTRIP -install xt_TCPOPTSTRIP /bin/false -blacklist xt_TEE -install xt_TEE /bin/false -blacklist xt_TPROXY -install xt_TPROXY /bin/false -blacklist xt_TRACE -install xt_TRACE /bin/false -blacklist xt_addrtype -install xt_addrtype /bin/false -blacklist xt_bpf -install xt_bpf /bin/false -blacklist xt_cgroup -install xt_cgroup /bin/false -blacklist xt_cluster -install xt_cluster /bin/false -blacklist xt_comment -install xt_comment /bin/false -blacklist xt_connbytes -install xt_connbytes /bin/false -blacklist xt_connlabel -install xt_connlabel /bin/false -blacklist xt_connlimit -install xt_connlimit /bin/false -blacklist xt_connmark -install xt_connmark /bin/false -blacklist xt_conntrack -install xt_conntrack /bin/false -blacklist xt_cpu -install xt_cpu /bin/false -blacklist xt_dccp -install xt_dccp /bin/false -blacklist xt_devgroup -install xt_devgroup /bin/false -blacklist xt_dscp -install xt_dscp /bin/false -blacklist xt_ecn -install xt_ecn /bin/false -blacklist xt_esp -install xt_esp /bin/false -blacklist xt_hashlimit -install xt_hashlimit /bin/false -blacklist xt_helper -install xt_helper /bin/false -blacklist xt_hl -install xt_hl /bin/false -blacklist xt_ipcomp -install xt_ipcomp /bin/false -blacklist xt_iprange -install xt_iprange /bin/false -blacklist xt_ipvs -install xt_ipvs /bin/false -blacklist xt_l2tp -install xt_l2tp /bin/false -blacklist xt_length -install xt_length /bin/false -blacklist xt_limit -install xt_limit /bin/false -blacklist xt_mac -install xt_mac /bin/false -blacklist xt_mark -install xt_mark /bin/false -blacklist xt_multiport -install xt_multiport /bin/false -blacklist xt_nat -install xt_nat /bin/false -blacklist xt_nfacct -install xt_nfacct /bin/false -blacklist xt_osf -install xt_osf /bin/false -blacklist xt_owner -install xt_owner /bin/false -blacklist xt_physdev -install xt_physdev /bin/false -blacklist xt_pkttype -install xt_pkttype /bin/false -blacklist xt_policy -install xt_policy /bin/false -blacklist xt_quota -install xt_quota /bin/false -blacklist xt_rateest -install xt_rateest /bin/false -blacklist xt_realm -install xt_realm /bin/false -blacklist xt_recent -install xt_recent /bin/false -blacklist xt_sctp -install xt_sctp /bin/false -blacklist xt_set -install xt_set /bin/false -blacklist xt_socket -install xt_socket /bin/false -blacklist xt_state -install xt_state /bin/false -blacklist xt_statistic -install xt_statistic /bin/false -blacklist xt_string -install xt_string /bin/false -blacklist xt_tcpmss -install xt_tcpmss /bin/false -blacklist xt_time -install xt_time /bin/false -blacklist xt_u32 -install xt_u32 /bin/false blacklist ip_set_bitmap_ip install ip_set_bitmap_ip /bin/false blacklist ip_set_bitmap_ipmac