MERGEME: Only expose proxy to docker

This commit is contained in:
2025-02-17 15:28:24 +01:00
parent ab82757b42
commit ea49d762d1
2 changed files with 8 additions and 2 deletions

View File

@@ -55,8 +55,6 @@
# Accept all proxy traffic from compute nodes but not the login
iptables -A nixos-fw -p tcp -s 10.0.40.30 --dport 23080 -j nixos-fw-log-refuse
iptables -A nixos-fw -p tcp -s 10.0.40.0/24 --dport 23080 -j nixos-fw-accept
# Allow docker to use our proxy
iptables -A nixos-fw -p tcp -i docker0 -d hut --dport 23080 -j nixos-fw-accept
'';
};
};