Fix firewall rules on nms hosts for VRRP

This commit is contained in:
Timo Makinen 2025-04-05 19:53:39 +00:00
parent ededecd167
commit 5cedf628c8

View file

@ -34,8 +34,7 @@ firewall_in:
- {proto: tcp, port: 9100, from: [172.20.20.0/22]}
- {proto: tcp, port: 9116, from: [172.20.20.0/22]}
firewall_raw:
- "-A INPUT -i eth1 -d 224.0.0.0/8 -j ACCEPT"
- "-A INPUT -i eth1 -p vrrp -j ACCEPT"
- "ip daddr 224.0.0.0/8 accept"
sssd_allow_groups:
- sysadm