-mkdir -pv $(DESTDIR)/etc/{network,ppp}
-mkdir -pv $(DESTDIR)/lib/network
-mkdir -pv $(DESTDIR)/sbin
+ -mkdir -pv $(DESTDIR)/usr/lib/sysctl.d
-mkdir -pv $(DESTDIR)/var/log/network
install -m 755 -v network $(DESTDIR)/sbin
cp -rfv {hooks,header*,functions*} $(DESTDIR)/lib/network/
+ cp -fv sysctl.d/* $(DESTDIR)/usr/lib/sysctl.d/
install -m 755 -v ppp/ip-updown $(DESTDIR)/etc/ppp
ln -svf ip-updown $(DESTDIR)/etc/ppp/ip-pre-up
--- /dev/null
+# Kernel configuration file for IPv4
+#
+
+# Enable IPv4 packet forwarding
+net.ipv4.ip_forward = 1
+
+# Enable source route verification
+net.ipv4.conf.default.rp_filter = 1
+
+# Do not accept source routing
+net.ipv4.conf.default.accept_source_route = 0
+
+# Enable ARP filter
+net.ipv4.conf.default.arp_filter = 1
--- /dev/null
+# Kernel configuration file for the network
+#
+
+# Disable netfilter on bridges.
+net.bridge.bridge-nf-call-ip6tables = 0
+net.bridge.bridge-nf-call-iptables = 0
+net.bridge.bridge-nf-call-arptables = 0