configpolicy/roles/dch-gw/templates
Dustin c88ee8bd99 dch-gw: Restrict traffic from Management network
Traffic from the management network is not allowed except for specific
services. NTP is required of course, for time synchronization with the
pyrocufflink.blue domain controllers. RADIUS is necessary for WiFi
authentication, which is also handled by the DCs.
2018-07-15 12:16:43 -05:00
..
forward.nft.j2 dch-gw: Restrict traffic from Management network 2018-07-15 12:16:43 -05:00
incoming.nft.j2 dch-gw: Host Pyrocufflink VPN locally 2018-05-20 13:23:20 -05:00
masquerade.nft.j2 dch-gw: Host Pyrocufflink VPN locally 2018-05-20 13:23:20 -05:00
outgoing.nft.j2 dch-gw: Host Pyrocufflink VPN locally 2018-05-20 13:23:20 -05:00
port-forwards.nft.j2 roles/dch-gw: Explicitly accept forwarded ports 2018-04-06 20:13:03 -05:00
reject.nft.j2 roles/dch-gw: Configure the filter table 2018-03-29 10:06:30 -05:00