...
Code Block | ||||
---|---|---|---|---|
| ||||
apiVersion: batch.sdewan.akraino.org/v1alpha1 kind: FirewallConf metadata: name: example-firewall spec: zones: - name: lan network: - ovn-net2 input: REJECT output: ACCEPT - name: wan network: - ovn-net1 input: REJECT output: ACCEPT redirects: - name: DNAT-LAN src: wan src_dport: 1990 dest: lan dest_port: 22 proto: tcp target: DNAT rules: - name: REJECT_LAN_80 src: lan src_ip: 192.168.1.2 src_port: 80 proto: tcp target: REJECT forwardings: - name: lan-wan src: lan dest: wan |
The Sdewan reconcile function logic
The Mwan3Conf Reconcile logic
The controller behave
...