ansible/roles/nftables_infra/templates/nftables.d/70-nat.conf.j2
Jeltz 4d85cd7e4b
All checks were successful
continuous-integration/drone/push Build is passing
continuous-integration/drone/pr Build is passing
Fix some nftables issues
2022-01-13 13:59:49 +01:00

19 lines
361 B
Django/Jinja

{{ ansible_managed | comment }}
table ip nat {
chain postrouting {
type nat hook postrouting priority srcnat
policy accept
iif lo return
# Is there any other way to do that?
meta pkttype { multicast, broadcast } return
ip daddr 224.0.0.0/24 return
ip saddr $need_nat_ipv4 ip daddr != $aurore_ipv4 \
snat $nat_public_ipv4 persistent
}
}