diff options
author | Viacheslav <v.gletenko@vyos.io> | 2021-09-03 16:50:02 +0000 |
---|---|---|
committer | Viacheslav <v.gletenko@vyos.io> | 2021-09-03 16:50:02 +0000 |
commit | 213b6dd23ad6e327652878aa3b1d7ff66b8cd0b7 (patch) | |
tree | 8577fd7cde614de81efcb7ab1d88e3b04a5e25f2 /data/templates/openvpn | |
parent | a654886f23aada50b4f1a951c7c45a98f962341c (diff) | |
download | vyos-1x-213b6dd23ad6e327652878aa3b1d7ff66b8cd0b7.tar.gz vyos-1x-213b6dd23ad6e327652878aa3b1d7ff66b8cd0b7.zip |
openvpn: T690: Add metric for pushed routes
Diffstat (limited to 'data/templates/openvpn')
-rw-r--r-- | data/templates/openvpn/server.conf.tmpl | 19 |
1 files changed, 10 insertions, 9 deletions
diff --git a/data/templates/openvpn/server.conf.tmpl b/data/templates/openvpn/server.conf.tmpl index c5d665c0b..b2d0716c2 100644 --- a/data/templates/openvpn/server.conf.tmpl +++ b/data/templates/openvpn/server.conf.tmpl @@ -74,6 +74,16 @@ topology {{ server.topology }} {% for subnet in server.subnet %} {% if subnet | is_ipv4 %} server {{ subnet | address_from_cidr }} {{ subnet | netmask_from_cidr }} nopool +{# First ip address is used as gateway. It's allows to use metrics #} +{% if server.push_route is defined and server.push_route is not none %} +{% for route, route_config in server.push_route.items() %} +{% if route | is_ipv4 %} +push "route {{ route | address_from_cidr }} {{ route | netmask_from_cidr }} {{ subnet | first_host_address }} {{ route_config.metric if route_config.metric is defined else "0" }}" +{% elif route | is_ipv6 %} +push "route-ipv6 {{ route }}" +{% endif %} +{% endfor %} +{% endif %} {# OpenVPN assigns the first IP address to its local interface so the pool used #} {# in net30 topology - where each client receives a /30 must start from the second subnet #} {% if server.topology is defined and server.topology == 'net30' %} @@ -106,15 +116,6 @@ management /run/openvpn/openvpn-mgmt-intf unix ccd-exclusive {% endif %} -{% if server.push_route is defined and server.push_route is not none %} -{% for route in server.push_route %} -{% if route | is_ipv4 %} -push "route {{ route | address_from_cidr }} {{ route | netmask_from_cidr }}" -{% elif route | is_ipv6 %} -push "route-ipv6 {{ route }}" -{% endif %} -{% endfor %} -{% endif %} {% if server.name_server is defined and server.name_server is not none %} {% for nameserver in server.name_server %} {% if nameserver | is_ipv4 %} |