ansible/roles/nftables_router/templates/nftables.d/60-nat.conf.j2
Jeltz f24a3e1d29
Some checks failed
continuous-integration/drone/push Build is failing
Use group vars and rename some nftables vars
2021-03-10 08:29:15 +01:00

24 lines
465 B
Django/Jinja

{{ ansible_managed | comment }}
table ip nat {
chain prerouting {
type nat hook prerouting priority -100
policy accept
}
chain snat_to_wan {
log prefix "snat-to-wan" group 0
ip saddr $members_v4 snat $members_nat_v4 persistent
snat $any_nat_v4 persistent
}
chain postrouting {
type nat hook postrouting priority 100
policy accept
oifname $wan_iface goto snat_to_wan
}
}