Projet

Général

Profil

Paste
Télécharger au format
Statistiques
| Branche: | Révision:

root / manifests / rules @ 03d9e7da

Nom Taille Révision Âge Auteur Commentaire
  out 79e9a23f plus de 4 ans Nacho Barrientos Move ICMP stuff to separate classes
afs3_callback.pp 431 octets f3f2870f plus de 4 ans Steve Traylen Add rules for afs3_callback In particular the ...
dhcpv6_client.pp 190 octets 43566263 plus de 4 ans Nacho Barrientos Add rules for outgoing and incoming DHCPv6 clie...
dnat4.pp 1,06 ko a6316327 plus de 4 ans tr Use enum instead of pattern for proto
dns.pp 282 octets 8227cb1c plus de 4 ans tr Manage rule in dns
http.pp 134 octets 4db4422a plus de 4 ans tr Add http and https
https.pp 138 octets 4db4422a plus de 4 ans tr Add http and https
icinga2.pp 206 octets 8efbdf9a plus de 4 ans tr Refactoring
icmp.pp 1,03 ko 79e9a23f plus de 4 ans Nacho Barrientos Move ICMP stuff to separate classes
masquerade.pp 1,19 ko a6316327 plus de 4 ans tr Use enum instead of pattern for proto
node_exporter.pp 782 octets e5eb7424 plus de 4 ans tr Allow to specify prometheus source addresses
ospf.pp 173 octets ba5e15bd plus de 4 ans tr Add rules for OSPF
ospf3.pp 193 octets ba5e15bd plus de 4 ans tr Add rules for OSPF
puppet.pp 203 octets 8efbdf9a plus de 4 ans tr Refactoring
smtp.pp 134 octets c02d1b07 plus de 4 ans mh add a few more rules
smtp_submission.pp 168 octets c02d1b07 plus de 4 ans mh add a few more rules
smtps.pp 138 octets c02d1b07 plus de 4 ans mh add a few more rules
snat4.pp 1,08 ko a6316327 plus de 4 ans tr Use enum instead of pattern for proto
ssh.pp 192 octets 8efbdf9a plus de 4 ans tr Refactoring
tor.pp 194 octets 8efbdf9a plus de 4 ans tr Refactoring
wireguard.pp 213 octets 8efbdf9a plus de 4 ans tr Refactoring

Dernières révisions

# Date Auteur Commentaire
79e9a23f 2020-11-21 03:10 Nacho Barrientos

Move ICMP stuff to separate classes

9785cd54 2020-11-18 11:02 Steve Traylen

lint fix

215aee13 2020-11-18 07:18 Steve Traylen

Add kerberos out and openafs_client out

f3f2870f 2020-11-18 07:18 Steve Traylen

Add rules for afs3_callback

In particular the afs callback to the cache manager(7001) which is UDP and always
IPv4 since there OpenAFS does not support IPv6.

https://wiki.openafs.org/devel/AFSServicePorts/

43566263 2020-11-15 10:47 Nacho Barrientos

Add rules for outgoing and incoming DHCPv6 client traffic

e5eb7424 2020-11-05 16:37 tr

Allow to specify prometheus source addresses

e73f2e97 2020-10-28 15:53 tr

Fix rule node exporter

8227cb1c 2020-10-28 15:50 tr

Manage rule in dns

cb50fd79 2020-10-28 15:47 tr

Add rule in node_exporter

e17693e3 2020-10-20 08:29 Steve Traylen

New parameter out_all, default false

In order to allow all outbound traffic a parameter is
added to enable a simple `allow` entry on the out chain.

Default is false so backwards compatible.

If true all the other out_bound rules (ntp, ...) will be disabled...

Voir les révisions

Formats disponibles : Atom