nft's table inet is IPv4+IPv6 aware, no need for special IPv6 rule

This commit is contained in:
pettai 2024-06-13 13:12:32 +02:00
parent ebbc77db04
commit c85bd24126
No known key found for this signature in database
GPG key ID: CDF2C381E9A751BD

View file

@ -28,13 +28,7 @@ class dns::apache2 {
sunet::nftables::rule { 'apache-http':
rule => "add rule inet filter input tcp dport 80 counter accept comment \"allow-apache2-http\""
}
#sunet::nftables::rule { 'apache-http-v6':
# rule => "add rule inet6 filter input tcp dport 80 counter accept comment \"allow-apache2-http\""
#}
sunet::nftables::rule { 'apache-https':
rule => "add rule inet filter input tcp dport 443 counter accept comment \"allow-apache2-https\""
}
#sunet::nftables::rule { 'apache-https-v6':
# rule => "add rule inet6 filter input tcp dport 443 counter accept comment \"allow-apache2-https\""
#}
}