mirror of
git://git.proxmox.com/git/pve-firewall.git
synced 2025-01-04 09:17:58 +03:00
9734f890c4
This also includes support for parsing rules referencing IPSets in the new SDN scope and generating those IPSets in the firewall. We always load the new configuration, since loading the configuration always includes validating the loaded rules. Validation fails without including the SDN ipsets, leading to syslog error messages. In the API, we only use the IPSets the user is actually allowed to use for validating the rules - preventing users from using autogenerated IPSets they have no permission for. Signed-off-by: Stefan Hanreich <s.hanreich@proxmox.com> |
||
---|---|---|
debian | ||
src | ||
test | ||
.gitignore | ||
Makefile |