From 9e2bdc96ea63e7ee1adb002df17e0d9ecc1cd410 Mon Sep 17 00:00:00 2001 From: Alex W Date: Thu, 30 Jan 2025 20:22:41 +0000 Subject: firewall: T5493: Implement remote-group --- data/templates/firewall/nftables-defines.j2 | 9 +++++++++ 1 file changed, 9 insertions(+) (limited to 'data') diff --git a/data/templates/firewall/nftables-defines.j2 b/data/templates/firewall/nftables-defines.j2 index fa6cd74c0..3147b4c37 100644 --- a/data/templates/firewall/nftables-defines.j2 +++ b/data/templates/firewall/nftables-defines.j2 @@ -35,6 +35,15 @@ } {% endfor %} {% endif %} +{% if group.remote_group is vyos_defined and is_l3 and not is_ipv6 %} +{% for name, name_config in group.remote_group.items() %} + set R_{{ name }} { + type {{ ip_type }} + flags interval + auto-merge + } +{% endfor %} +{% endif %} {% if group.mac_group is vyos_defined %} {% for group_name, group_conf in group.mac_group.items() %} {% set includes = group_conf.include if group_conf.include is vyos_defined else [] %} -- cgit v1.2.3