From 425c85058300026a8591f1e39fba8a000bf8a10e Mon Sep 17 00:00:00 2001 From: Kaarle Ritvanen Date: Mon, 13 Aug 2018 15:52:42 +0300 Subject: adp-router: configurable default action --- optional/adp-router.json | 10 +++++++++- 1 file changed, 9 insertions(+), 1 deletion(-) (limited to 'optional') diff --git a/optional/adp-router.json b/optional/adp-router.json index 64b8c4c..f9b0df5 100644 --- a/optional/adp-router.json +++ b/optional/adp-router.json @@ -1,5 +1,7 @@ { "description": "Router", + "before": "adp-config", + "variable": { "adp_router_policy": "accept" }, "zone": { "adp-lan": { "iface": "$adp_lan_ifaces", "addr": "$adp_lan_addrs" @@ -12,6 +14,12 @@ "action": "drop" } ], - "policy": [ { "in": "adp-lan", "out": "adp-wan" } ], + "policy": [ + { + "in": "adp-lan", + "out": "adp-wan", + "action": "$adp_router_policy" + } + ], "snat": [ { "out": "adp-wan", "src": "$adp_lan_private_addrs" } ] } -- cgit v1.2.3