summaryrefslogtreecommitdiff
path: root/data/templates/ids/fastnetmon.j2
diff options
context:
space:
mode:
authorAdrian Almenar <adrian@tecnocratica.net>2022-07-25 15:47:51 +0200
committerAdrian Almenar <adrian@tecnocratica.net>2022-07-25 15:47:51 +0200
commitbd119de6fd32480a4b6fd9c3b16cd5191af350af (patch)
tree6ff52e2be7a71bf8e9fca28498fa091c81c8e628 /data/templates/ids/fastnetmon.j2
parentdf7348da111668d38796d955bf64fa384eb7a58f (diff)
downloadvyos-1x-bd119de6fd32480a4b6fd9c3b16cd5191af350af.tar.gz
vyos-1x-bd119de6fd32480a4b6fd9c3b16cd5191af350af.zip
fastnetmon: T4556: Allow configure white_list_path and populate with hosts/networks that should be ignored.
Diffstat (limited to 'data/templates/ids/fastnetmon.j2')
-rw-r--r--data/templates/ids/fastnetmon.j23
1 files changed, 3 insertions, 0 deletions
diff --git a/data/templates/ids/fastnetmon.j2 b/data/templates/ids/fastnetmon.j2
index 005338836..b9f77a257 100644
--- a/data/templates/ids/fastnetmon.j2
+++ b/data/templates/ids/fastnetmon.j2
@@ -5,6 +5,9 @@ logging:local_syslog_logging = on
# list of all your networks in CIDR format
networks_list_path = /run/fastnetmon/networks_list
+# list networks in CIDR format which will be not monitored for attacks
+white_list_path = /run/fastnetmon/excluded_networks_list
+
# Enable/Disable any actions in case of attack
enable_ban = on
enable_ban_ipv6 = on