summaryrefslogtreecommitdiff
path: root/docs/configexamples/zone-policy.rst
diff options
context:
space:
mode:
authorsrividya0208 <a.srividya@vyos.io>2024-05-06 13:49:48 -0400
committerMergify <37929162+mergify[bot]@users.noreply.github.com>2024-05-06 19:27:47 +0000
commitd6019e8c51e7c75be764b2bddb574fba5dd9ab58 (patch)
treefa15233ff6c7efa5131fcae50a31e45c81f798ee /docs/configexamples/zone-policy.rst
parent39a997dd95282c09d5f78478998d6c8be57e0ca3 (diff)
downloadvyos-documentation-d6019e8c51e7c75be764b2bddb574fba5dd9ab58.tar.gz
vyos-documentation-d6019e8c51e7c75be764b2bddb574fba5dd9ab58.zip
Modified old option from 'enable-default-log' to new one 'default-log'
(cherry picked from commit 0e98fdb64154011850ba5705b9c6f8e74868c955)
Diffstat (limited to 'docs/configexamples/zone-policy.rst')
-rw-r--r--docs/configexamples/zone-policy.rst8
1 files changed, 4 insertions, 4 deletions
diff --git a/docs/configexamples/zone-policy.rst b/docs/configexamples/zone-policy.rst
index 6f3d75ec..1af8454a 100644
--- a/docs/configexamples/zone-policy.rst
+++ b/docs/configexamples/zone-policy.rst
@@ -145,7 +145,7 @@ To add logging to the default rule, do:
.. code-block:: none
- set firewall name <ruleSet> enable-default-log
+ set firewall name <ruleSet> default-log
By default, iptables does not allow traffic for established sessions to
@@ -251,7 +251,7 @@ Since we have 4 zones, we need to setup the following rulesets.
Dmz-local
Even if the two zones will never communicate, it is a good idea to
-create the zone-pair-direction rulesets and set enable-default-log. This
+create the zone-pair-direction rulesets and set default-log. This
will allow you to log attempts to access the networks. Without it, you
will never see the connection attempts.
@@ -261,7 +261,7 @@ This is an example of the three base rules.
name wan-lan {
default-action drop
- enable-default-log
+ default-log
rule 1 {
action accept
state {
@@ -285,7 +285,7 @@ Here is an example of an IPv6 DMZ-WAN ruleset.
ipv6-name dmz-wan-6 {
default-action drop
- enable-default-log
+ default-log
rule 1 {
action accept
state {