Merge "Designate mDNS: restrict access to internal network"
This commit is contained in:
commit
b4f2c55580
|
@ -109,14 +109,28 @@ outputs:
|
|||
value:
|
||||
service_name: designate_mdns
|
||||
firewall_rules:
|
||||
'142 designate_mdns udp':
|
||||
proto: 'udp'
|
||||
dport:
|
||||
- 5354
|
||||
'143 designate_mdns tcp':
|
||||
proto: 'tcp'
|
||||
dport:
|
||||
- 5354
|
||||
map_merge:
|
||||
- '142 designate_mdns udp':
|
||||
extras:
|
||||
ensure: absent
|
||||
'143 designate_mdns tcp':
|
||||
extras:
|
||||
ensure: absent
|
||||
- map_merge:
|
||||
repeat:
|
||||
for_each:
|
||||
<% net_cidr %>: {get_param: [ServiceData, net_cidr_map, {get_param: [ServiceNetMap, DesignateMdnsNetwork]}]}
|
||||
template:
|
||||
'142 designate_mdns udp <% net_cidr %>':
|
||||
proto: 'udp'
|
||||
source: <% net_cidr %>
|
||||
dport:
|
||||
- 5354
|
||||
'143 designate_mdns tcp <% net_cidr %>':
|
||||
proto: 'tcp'
|
||||
source: <% net_cidr %>
|
||||
dport:
|
||||
- 5354
|
||||
firewall_frontend_rules:
|
||||
'100 designate_mdns proxies':
|
||||
proto: 'tcp'
|
||||
|
|
Loading…
Reference in New Issue