forked from extern/shorewall_code
Don't generate rules to link local net from vserver zones
This commit is contained in:
parent
59189d6324
commit
328e1b7f6a
@ -1983,9 +1983,11 @@ sub generate_matrix() {
|
|||||||
add_jump $filter_table->{OUTPUT}, $outputref, 0, match_dest_dev( $interface ) unless $output_jump_added{$interface}++;
|
add_jump $filter_table->{OUTPUT}, $outputref, 0, match_dest_dev( $interface ) unless $output_jump_added{$interface}++;
|
||||||
$use_output = 1;
|
$use_output = 1;
|
||||||
|
|
||||||
for my $vzone ( vserver_zones ) {
|
unless ( uc $net eq IPv6_LINKLOCAL ) {
|
||||||
generate_source_rules ( $outputref, $vzone, $zone, $dest );
|
for my $vzone ( vserver_zones ) {
|
||||||
}
|
generate_source_rules ( $outputref, $vzone, $zone, $dest );
|
||||||
|
}
|
||||||
|
}
|
||||||
} else {
|
} else {
|
||||||
$outputref = $filter_table->{OUTPUT};
|
$outputref = $filter_table->{OUTPUT};
|
||||||
$interfacematch = match_dest_dev $interface;
|
$interfacematch = match_dest_dev $interface;
|
||||||
|
Loading…
Reference in New Issue
Block a user