Skip to content

User ACL: Polish validation (scope: flow) #1651

Description

@qmonnet

In particular: Reject a config with a user ACL with scope: flow if there is any combination of expose blocks from the two ends of the peering that does not have masquerade or port forwarding (because we don't support scope: flow without flow tracking, currently only provided by masquerade or port forwarding).

Activity

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Metadata

Metadata

Assignees

Labels

area/aclRelated to ACLs (Access Control Lists)

Type

Projects

No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions