Skip to content
Discussion options

You must be logged in to vote

I see there is a monitor option, but that is just monitoring changes in nftables? When I change a rule on disk, opensnitch 1.6.6 does not load the change automatically.

It should reload the files (unless the rule is malformed). Change the LogLevel to DEBUG, and edit a rule manually from /etc/opensnitchd/rules. There should be log entries similar to these ones in /var/log/opensnitch.log

[2025-04-23 19:39:17.187893]  IMP  Ruleset changed due to 999-deny-dnsmasq.json, reloading ...
[2025-04-23 19:39:17.188027]  DBG  Operator compiled: process.path is '/usr/sbin/dnsmasq'
[2025-04-23 19:39:17.188049]  DBG  Loaded rule from /tmp/r2/999-deny-dnsmasq.json: [Enabled] 999-deny-dnsmasq: if(process…

Replies: 1 comment 1 reply

Comment options

You must be logged in to vote
1 reply
@hashkool
Comment options

Answer selected by hashkool
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Category
Q&A
Labels
None yet
2 participants