From 8a0cc0cae3468f731803acab1924236b23fa4048 Mon Sep 17 00:00:00 2001 From: Luca Filipozzi Date: Wed, 18 Oct 2017 17:59:54 +0000 Subject: [PATCH] add more casulana rules for br1 --- modules/ferm/manifests/per_host.pp | 10 ++++++++-- 1 file changed, 8 insertions(+), 2 deletions(-) diff --git a/modules/ferm/manifests/per_host.pp b/modules/ferm/manifests/per_host.pp index 2afa57050..d599c144b 100644 --- a/modules/ferm/manifests/per_host.pp +++ b/modules/ferm/manifests/per_host.pp @@ -9,8 +9,14 @@ class ferm::per_host { case $::hostname { casulana: { - @ferm::rule { 'dsa-cloud-builds-nat': - description => 'masquerade br1 virtual machines', + @ferm::rule { 'dsa-cloud-builds-br1-in': + description => 'br1 virtual machines - in', + table => 'filter', + chain => 'INPUT', + rule => 'interface br1 ACCEPT' + } + @ferm::rule { 'dsa-cloud-builds-br1-nat': + description => 'br1 virtual machines - nat', table => 'nat', chain => 'POSTROUTING', rule => 'saddr 172.16.1.0/24 outerface bond0.21 MASQUERADE' -- 2.20.1