Projet

Général

Profil

Révision 08b9f1d0

ID08b9f1d04537e24b09d4dc3293f4a3bc04345242
Parent 3413220c
Enfant a7cb6803

Ajouté par Steve Traylen il y a plus d'un an

Additional rules for podman root containers

This class defines additional forwarding rules to let root containers
reach external networks when using Netavark (since v4.0) or CNI (deprecated).
At the time of writing, Podman supports automatic configuration
of firewall rules with iptables and firewalld only.

Voir les différences:

REFERENCE.md
76 76
* [`nftables::rules::out::tor`](#nftables--rules--out--tor): manage out tor
77 77
* [`nftables::rules::out::whois`](#nftables--rules--out--whois): allow clients to query remote whois server
78 78
* [`nftables::rules::out::wireguard`](#nftables--rules--out--wireguard): manage out wireguard
79
* [`nftables::rules::podman`](#nftables--rules--podman): Rules for Podman, a tool for managing OCI containers and pods.
80
This class defines additional forwarding rules to let root containers
81
reach external networks when using Netavark (since v4.0) or CNI (deprecated).
82
At the time of writing, Podman supports automatic configuration
83
of firewall rules with iptables and firewalld only.
79 84
* [`nftables::rules::puppet`](#nftables--rules--puppet): manage in puppet
80 85
* [`nftables::rules::pxp_agent`](#nftables--rules--pxp_agent): manage in pxp-agent
81 86
* [`nftables::rules::qemu`](#nftables--rules--qemu): Bridged network configuration for qemu/libvirt
......
1190 1195

  
1191 1196
Default value: `[51820]`
1192 1197

  
1198
### <a name="nftables--rules--podman"></a>`nftables::rules::podman`
1199

  
1200
Rules for Podman, a tool for managing OCI containers and pods.
1201
This class defines additional forwarding rules to let root containers
1202
reach external networks when using Netavark (since v4.0) or CNI (deprecated).
1203
At the time of writing, Podman supports automatic configuration
1204
of firewall rules with iptables and firewalld only.
1205

  
1193 1206
### <a name="nftables--rules--puppet"></a>`nftables::rules::puppet`
1194 1207

  
1195 1208
manage in puppet

Formats disponibles : Unified diff