|
|
|
|
|
|
|
|
|
|
|
|
|
|
{%- for chain_name, chain in service.get('chain', {}).iteritems() %} |
|
|
{%- for chain_name, chain in service.get('chain', {}).iteritems() %} |
|
|
|
|
|
|
|
|
|
|
|
{%- if grains.get('virtual_subtype', None) not in ['Docker', 'LXC'] %} |
|
|
iptables_{{ chain_name }}: |
|
|
iptables_{{ chain_name }}: |
|
|
iptables.chain_present: |
|
|
iptables.chain_present: |
|
|
- family: ipv4 |
|
|
- family: ipv4 |
|
|
|
|
|
|
|
|
- iptables: iptables_{{ chain_name }}_ipv6_policy |
|
|
- iptables: iptables_{{ chain_name }}_ipv6_policy |
|
|
{%- endif %} |
|
|
{%- endif %} |
|
|
{%- endif %} |
|
|
{%- endif %} |
|
|
|
|
|
{%- endif %} |
|
|
|
|
|
|
|
|
{%- if chain.policy is defined %} |
|
|
{%- if chain.policy is defined %} |
|
|
iptables_{{ chain_name }}_policy: |
|
|
iptables_{{ chain_name }}_policy: |