network/roles/firewall/templates
Timotej Lazar 7b5980f871 exit: add routes for internal IPv4 addresses to outside VRF
Routed through and mostly dropped by the firewall, of course. So we
don’t necessarily have to do NAT for everything that comes from the
old / USI network.
2024-08-13 19:02:03 +02:00
..
conntrackd.conf.j2 Initial commit, squashed 2023-12-18 12:55:47 +01:00
fabric.intf.j2 Initial commit, squashed 2023-12-18 12:55:47 +01:00
frr.conf.j2 exit: add routes for internal IPv4 addresses to outside VRF 2024-08-13 19:02:03 +02:00
interfaces.j2 Initial commit, squashed 2023-12-18 12:55:47 +01:00
interfaces.nft.j2 Initial commit, squashed 2023-12-18 12:55:47 +01:00
mactab.j2 fabric: consolidate interface templates 2024-02-27 13:35:29 +01:00
mgmt.intf.j2 firewall: disable forwarding for mgmt interfaces in if-pre-up 2024-01-30 13:11:35 +01:00
networks.nft.j2 Query prefixes once for all hosts 2024-04-28 12:14:05 +02:00
nftables.nft.j2 firewall: also configure VPN forwards in the app 2024-05-03 11:27:27 +02:00
sysctl.conf.j2 firewall: disable forwarding for mgmt interfaces in if-pre-up 2024-01-30 13:11:35 +01:00
wg.intf.j2 firewall: set IPv6 address for wireguard interface 2023-12-18 12:55:50 +01:00