summaryrefslogtreecommitdiff
path: root/interface-definitions/firewall-options.xml.in
diff options
context:
space:
mode:
authorChristian Poessinger <christian@poessinger.com>2020-03-04 19:53:58 +0100
committerChristian Poessinger <christian@poessinger.com>2020-03-04 21:45:41 +0100
commit93f7ae7f1ed1e218ef64d2582d11ac0ed769a438 (patch)
tree9ec8c29b220496481e90a23265221f8632e48a92 /interface-definitions/firewall-options.xml.in
parent5bf9dfd17096af6e7cf06e8e20eb16e8e55b9177 (diff)
downloadvyos-1x-93f7ae7f1ed1e218ef64d2582d11ac0ed769a438.tar.gz
vyos-1x-93f7ae7f1ed1e218ef64d2582d11ac0ed769a438.zip
vrf: T31: rename 'vrf disable-bind-to-all ipv4' to 'vrf bind-to-all'
By default the scope of the port bindings for unbound sockets is limited to the default VRF. That is, it will not be matched by packets arriving on interfaces enslaved to an l3mdev and processes may bind to the same port if they bind to an l3mdev. TCP & UDP services running in the default VRF context (ie., not bound to any VRF device) can work across all VRF domains by enabling the 'vrf bind-to-all' option.
Diffstat (limited to 'interface-definitions/firewall-options.xml.in')
0 files changed, 0 insertions, 0 deletions