summaryrefslogtreecommitdiff
diff options
context:
space:
mode:
authorGaurav Sinha <gaurav.sinha@vyatta.com>2012-11-17 01:31:42 -0800
committerGaurav Sinha <gaurav.sinha@vyatta.com>2012-11-19 09:59:04 -0800
commit795fc37b70b56caa4d4f8e7f494a252e25749bb6 (patch)
tree57da03484015718cd0070f6ab6148cee97fd4a94
parentb865aa23805a5c3463b4a10c36be9a5f20f4d6b4 (diff)
downloadvyatta-op-firewall-795fc37b70b56caa4d4f8e7f494a252e25749bb6.tar.gz
vyatta-op-firewall-795fc37b70b56caa4d4f8e7f494a252e25749bb6.zip
add allowed scripts for group suggestions
(cherry picked from commit bdb7c5fd427bf5040ae9a079f71964a0aab72852)
-rw-r--r--templates/reset/firewall/group/address-group/node.tag/node.def1
-rw-r--r--templates/reset/firewall/group/network-group/node.tag/node.def1
-rw-r--r--templates/reset/firewall/group/port-group/node.tag/node.def1
3 files changed, 3 insertions, 0 deletions
diff --git a/templates/reset/firewall/group/address-group/node.tag/node.def b/templates/reset/firewall/group/address-group/node.tag/node.def
index e6ab418..0853c8f 100644
--- a/templates/reset/firewall/group/address-group/node.tag/node.def
+++ b/templates/reset/firewall/group/address-group/node.tag/node.def
@@ -1,2 +1,3 @@
help: reset a firewall group
+allowed: /opt/vyatta/sbin/vyatta-ipset.pl --action="show-address-groups"
run: /opt/vyatta/bin/sudo-users/vyatta-ipset.pl --action=reset-set --set-name=$5 --set-type="address"
diff --git a/templates/reset/firewall/group/network-group/node.tag/node.def b/templates/reset/firewall/group/network-group/node.tag/node.def
index deead22..349a8a6 100644
--- a/templates/reset/firewall/group/network-group/node.tag/node.def
+++ b/templates/reset/firewall/group/network-group/node.tag/node.def
@@ -1,2 +1,3 @@
help: reset a firewall group
+allowed: /opt/vyatta/sbin/vyatta-ipset.pl --action="show-network-groups"
run: /opt/vyatta/bin/sudo-users/vyatta-ipset.pl --action=reset-set --set-name=$5 --set-type="network"
diff --git a/templates/reset/firewall/group/port-group/node.tag/node.def b/templates/reset/firewall/group/port-group/node.tag/node.def
index f2b06c7..cbbbc42 100644
--- a/templates/reset/firewall/group/port-group/node.tag/node.def
+++ b/templates/reset/firewall/group/port-group/node.tag/node.def
@@ -1,2 +1,3 @@
help: reset a firewall group
+allowed: /opt/vyatta/sbin/vyatta-ipset.pl --action="show-port-groups"
run: /opt/vyatta/bin/sudo-users/vyatta-ipset.pl --action=reset-set --set-name=$5 --set-type="port"