diff --git a/roles/firewall/templates/firewall.j2 b/roles/firewall/templates/firewall.j2 index 7d516c3..a0acb32 100644 --- a/roles/firewall/templates/firewall.j2 +++ b/roles/firewall/templates/firewall.j2 @@ -428,6 +428,18 @@ config rule option target 'ACCEPT' option family 'ipv4' +config rule + option name 'Allow-FORWARD-Munin-Mikrotik' + option src 'dmz' + option src_ip '{{ hostvars['munin.dmz.mateu.be']['ansible_default_ipv4']['address'] }}' + list proto 'tcp' + list proto 'udp' + option dest 'lan' + option dest_ip '{{ lookup('dig', 'garreg-mach.mateu.be') }}' + option dest_port '161' + option target 'ACCEPT' + option family 'ipv4' + ## Default configuration config defaults option syn_flood '1'