Browse Source

add int datacenter to firewall

master
Sean Johnson 11 months ago
parent
commit
bdb94013e8
  1. 4
      fwrules/templates/chains.nft.j2
  2. 2
      fwrules/templates/firewall.nft.j2

4
fwrules/templates/chains.nft.j2

@ -93,6 +93,10 @@ chain usc2_privnet { @@ -93,6 +93,10 @@ chain usc2_privnet {
ip saddr 10.200.0.0/24 accept
}
chain int_privnet {
ip saddr 10.100.0.0/23 accept
}
chain vault_private {
define ports_tcp = {
8200, # vault

2
fwrules/templates/firewall.nft.j2

@ -37,6 +37,8 @@ table inet firewall { @@ -37,6 +37,8 @@ table inet firewall {
jump http_public
{%- if datacenter == "usc2" %}
jump usc2_privnet
{%- elif datacenter == "int" %}
jump int_privnet
{%- endif %}
{%- if nodetype == "builder" %}
jump concourse_worker

Loading…
Cancel
Save