|
53 | 53 | "FEATURE": {},
|
54 | 54 | },
|
55 | 55 | "return": [
|
56 |
| - ['iptables', '-A', 'INPUT', '-d', '10.10.10.10/32', '-j', 'DROP'], |
57 |
| - ['iptables', '-A', 'INPUT', '-d', '10.10.11.10/32', '-j', 'DROP'], |
58 |
| - ['iptables', '-A', 'INPUT', '-d', '10.10.12.10/32', '-j', 'DROP'], |
| 56 | + ['iptables', '-A', 'INPUT', '-d', '10.10.10.10', '-j', 'DROP'], |
| 57 | + ['iptables', '-A', 'INPUT', '-d', '10.10.11.10', '-j', 'DROP'], |
| 58 | + ['iptables', '-A', 'INPUT', '-d', '10.10.12.10', '-j', 'DROP'], |
59 | 59 | ],
|
60 | 60 | },
|
61 | 61 | ],
|
|
81 | 81 | "FEATURE": {},
|
82 | 82 | },
|
83 | 83 | "return": [
|
84 |
| - ['iptables', '-A', 'INPUT', '-d', '10.10.11.1/32', '-j', 'DROP'], |
| 84 | + ['iptables', '-A', 'INPUT', '-d', '10.10.11.1', '-j', 'DROP'], |
| 85 | + ], |
| 86 | + }, |
| 87 | + ], |
| 88 | + [ |
| 89 | + "One VLAN interface, /24, we are .2", |
| 90 | + { |
| 91 | + "config_db": { |
| 92 | + "MGMT_INTERFACE": { |
| 93 | + "eth0|172.18.0.100/24": { |
| 94 | + "gwaddr": "172.18.0.1" |
| 95 | + } |
| 96 | + }, |
| 97 | + "LOOPBACK_INTERFACE": {}, |
| 98 | + "VLAN_INTERFACE": { |
| 99 | + "Vlan110|10.10.11.2/24": {}, |
| 100 | + }, |
| 101 | + "PORTCHANNEL_INTERFACE": {}, |
| 102 | + "INTERFACE": {}, |
| 103 | + "DEVICE_METADATA": { |
| 104 | + "localhost": { |
| 105 | + } |
| 106 | + }, |
| 107 | + "FEATURE": {}, |
| 108 | + }, |
| 109 | + "return": [ |
| 110 | + "iptables -A INPUT -d 10.10.11.2 -j DROP", |
85 | 111 | ],
|
86 | 112 | },
|
87 | 113 | ],
|
|
113 | 139 | "FEATURE": {},
|
114 | 140 | },
|
115 | 141 | "return": [
|
116 |
| - ['ip6tables', '-A', 'INPUT', '-d', '2001:db8:10::/128', '-j', 'DROP'], |
117 |
| - ['ip6tables', '-A', 'INPUT', '-d', '2001:db8:11::1/128', '-j', 'DROP'], |
118 |
| - ['ip6tables', '-A', 'INPUT', '-d', '2001:db8:12::/128', '-j', 'DROP'], |
119 |
| - ['ip6tables', '-A', 'INPUT', '-d', '2001:db8:13::/128', '-j', 'DROP'] |
120 |
| - ], |
| 142 | + ['ip6tables', '-A', 'INPUT', '-d', '2001:db8:10::', '-j', 'DROP'], |
| 143 | + ['ip6tables', '-A', 'INPUT', '-d', '2001:db8:11::', '-j', 'DROP'], |
| 144 | + ['ip6tables', '-A', 'INPUT', '-d', '2001:db8:12::', '-j', 'DROP'], |
| 145 | + ['ip6tables', '-A', 'INPUT', '-d', '2001:db8:13::', '-j', 'DROP'] |
| 146 | + ], |
121 | 147 | },
|
122 | 148 | ]
|
123 | 149 | ]
|
0 commit comments