summaryrefslogtreecommitdiff
path: root/data/templates/firewall/nftables-policy.j2
diff options
context:
space:
mode:
authorDaniil Baturin <daniil@vyos.io>2023-12-31 23:22:25 +0000
committerGitHub <noreply@github.com>2023-12-31 23:22:25 +0000
commit2078253176046ea4d07e69caeb7932ea439b5614 (patch)
tree74c994d9100d4ded988de5d49ea9f411d3d17528 /data/templates/firewall/nftables-policy.j2
parent9e49bcad817dcc7c39e4d5e2329828251327baad (diff)
parent57faafc8f8597f62d5edb5529349a565d7d2e865 (diff)
downloadvyos-1x-2078253176046ea4d07e69caeb7932ea439b5614.tar.gz
vyos-1x-2078253176046ea4d07e69caeb7932ea439b5614.zip
Merge pull request #2725 from vyos/mergify/bp/sagitta/pr-2651
firewall: T5834: Rename 'enable-default-log' to 'default-log' (backport #2651)
Diffstat (limited to 'data/templates/firewall/nftables-policy.j2')
-rw-r--r--data/templates/firewall/nftables-policy.j26
1 files changed, 6 insertions, 0 deletions
diff --git a/data/templates/firewall/nftables-policy.j2 b/data/templates/firewall/nftables-policy.j2
index d77e3f6e9..9e28899b0 100644
--- a/data/templates/firewall/nftables-policy.j2
+++ b/data/templates/firewall/nftables-policy.j2
@@ -28,6 +28,9 @@ table ip vyos_mangle {
{{ rule_conf | nft_rule('route', route_text, rule_id, 'ip') }}
{% endfor %}
{% endif %}
+{% if conf.default_log is vyos_defined %}
+ counter log prefix "[ipv4-{{ (route_text)[:19] }}-default]"
+{% endif %}
}
{% endfor %}
{% endif %}
@@ -57,6 +60,9 @@ table ip6 vyos_mangle {
{{ rule_conf | nft_rule('route6', route_text, rule_id, 'ip6') }}
{% endfor %}
{% endif %}
+{% if conf.default_log is vyos_defined %}
+ counter log prefix "[ipv6-{{ (route_text)[:19] }}-default]"
+{% endif %}
}
{% endfor %}
{% endif %}