]> git.proxmox.com Git - pve-firewall.git/blame - example/cluster.fw
correctly save security group rules
[pve-firewall.git] / example / cluster.fw
CommitLineData
c4a2e5ae
DM
1[OPTIONS]
2
3enable: 1
4
5[RULES]
6
7IN SSH(ACCEPT) vmbr0
8
92e976b3
DM
9[group group1]
10
11IN ACCEPT - - tcp 22 -
12OUT ACCEPT - - tcp 80 -
13OUT ACCEPT - - icmp - -
14
15[group group3]
16
17IN ACCEPT 10.0.0.1
ba791b1f
AD
18IN ACCEPT 10.0.0.1-10.0.0.10
19IN ACCEPT 10.0.0.1,10.0.0.2,10.0.0.3
20IN ACCEPT +mynetgroup
92e976b3 21
34cdedfa 22
936af352 23[ipset myipset]
34cdedfa 24
2a052ee3
AD
25192.168.0.1 #mycomment
26172.16.0.10
34cdedfa 27192.168.0.0/24
cbb5d6f3 28! 10.0.0.0/8 #nomatch - needs kernel 3.7 or newer
34cdedfa 29