From c1f4cfadd9b879e6ccdb938e68c655cd0b3bd005 Mon Sep 17 00:00:00 2001 From: John Southworth Date: Mon, 5 Dec 2011 16:29:46 -0800 Subject: add priorities to vrrp traffic-policy so that it is executed after keepalived has started --- .../vrrp/vrrp-group/node.tag/interface/mirror/node.def | 17 +++++++++++++++++ .../vrrp-group/node.tag/interface/redirect/node.def | 17 +++++++++++++++++ 2 files changed, 34 insertions(+) create mode 100644 templates/interfaces/ethernet/node.tag/vrrp/vrrp-group/node.tag/interface/mirror/node.def create mode 100644 templates/interfaces/ethernet/node.tag/vrrp/vrrp-group/node.tag/interface/redirect/node.def (limited to 'templates') diff --git a/templates/interfaces/ethernet/node.tag/vrrp/vrrp-group/node.tag/interface/mirror/node.def b/templates/interfaces/ethernet/node.tag/vrrp/vrrp-group/node.tag/interface/mirror/node.def new file mode 100644 index 0000000..0b2ca8c --- /dev/null +++ b/templates/interfaces/ethernet/node.tag/vrrp/vrrp-group/node.tag/interface/mirror/node.def @@ -0,0 +1,17 @@ +priority: 820 +type: txt +help: Incoming packet mirroring destination +allowed: ${vyatta_sbindir}/vyatta-interfaces.pl --show=ethernet + +val_help: Interface for packet mirroring + +commit:expression: $VAR(../redirect) == ""; \ + "interface $VAR(../../../../@)v$VAR(../../@) : can not do both redirect and mirror" + +commit:expression: $VAR(../traffic-policy/in) == ""; \ + "interface $VAR(../../../../@)v$VAR(../../@) : can not use ingress policy and mirror" + +commit:expression: exec "/opt/vyatta/sbin/vyatta-interfaces.pl --dev $VAR(@) --check=all" + +update: /opt/vyatta/sbin/vyatta-qos.pl --update-action $VAR(../../../../@)v$VAR(../../@) +delete: /opt/vyatta/sbin/vyatta-qos.pl --delete-action $VAR(../../../../@)v$VAR(../../@) diff --git a/templates/interfaces/ethernet/node.tag/vrrp/vrrp-group/node.tag/interface/redirect/node.def b/templates/interfaces/ethernet/node.tag/vrrp/vrrp-group/node.tag/interface/redirect/node.def new file mode 100644 index 0000000..fcaaf15 --- /dev/null +++ b/templates/interfaces/ethernet/node.tag/vrrp/vrrp-group/node.tag/interface/redirect/node.def @@ -0,0 +1,17 @@ +priority: 820 # after vrrp +type: txt +help: Incoming packet redirection destination +allowed: /opt/vyatta/sbin/vyatta-interfaces.pl --show=input + +val_help: Interface for packet redirection + +commit:expression: $VAR(../mirror) == "";\ + "interface $VAR(../../../../@)v$VAR(../../@) : can not do both redirect and mirror" + +commit:expression: $VAR(../traffic-policy/in) == ""; \ + "interface $VAR(../../../../@)v$VAR(../../@) : can not use ingress policy and redirect" + +commit:expression: exec "/opt/vyatta/sbin/vyatta-interfaces.pl --dev $VAR(@) --check=all" + +update: /opt/vyatta/sbin/vyatta-qos.pl --update-action $VAR(../../../../@)v$VAR(../../@) +delete: /opt/vyatta/sbin/vyatta-qos.pl --delete-action $VAR(../../../../@)v$VAR(../../@) -- cgit v1.2.3