X-Git-Url: https://git.proxmox.com/?p=pve-firewall.git;a=blobdiff_plain;f=src%2FPVE%2FFirewall.pm;h=5a6284fa3d2800f84d067c0bf578d8c5d89ccc8a;hp=2270ad73eb159bb36699c3e9215c0d632c4cbab4;hb=9268573a4675ab12576c956ad055538df616c994;hpb=0ac5757051a20983f9e2e01d83ec155b1f516151 diff --git a/src/PVE/Firewall.pm b/src/PVE/Firewall.pm index 2270ad7..5a6284f 100644 --- a/src/PVE/Firewall.pm +++ b/src/PVE/Firewall.pm @@ -2836,6 +2836,13 @@ sub compile { $vmfw_configs = read_vm_firewall_configs($cluster_conf, $vmdata, undef, $verbose); } + my ($ruleset, $ipset_ruleset) = compile_iptables_filter($cluster_conf, $hostfw_conf, $vmfw_configs, $vmdata, 4, $verbose); + return ($ruleset, $ipset_ruleset); +} + +sub compile_iptables_filter { + my ($cluster_conf, $hostfw_conf, $vmfw_configs, $vmdata, $ipversion, $verbose) = @_; + $cluster_conf->{ipset}->{venet0} = []; my $venet0_ipset_chain = compute_ipset_chain_name(0, 'venet0');