chore: allow certain apps from firezone net

This commit is contained in:
oddlama 2025-03-22 16:32:21 +01:00
parent a1f271caf0
commit 3b37b304fd
No known key found for this signature in database
GPG key ID: 14EFE510775FE39A
3 changed files with 9 additions and 0 deletions

View file

@ -134,6 +134,9 @@ in
extraConfig = ''
allow ${globals.net.home-lan.vlans.home.cidrv4};
allow ${globals.net.home-lan.vlans.home.cidrv6};
# Firezone traffic
allow ${globals.net.home-lan.vlans.services.hosts.ward.ipv4};
allow ${globals.net.home-lan.vlans.services.hosts.ward.ipv6};
deny all;
'';
};

View file

@ -250,6 +250,9 @@ in
send_timeout 600s;
allow ${globals.net.home-lan.vlans.home.cidrv4};
allow ${globals.net.home-lan.vlans.home.cidrv6};
# Firezone traffic
allow ${globals.net.home-lan.vlans.services.hosts.ward.ipv4};
allow ${globals.net.home-lan.vlans.services.hosts.ward.ipv6};
deny all;
'';
};

View file

@ -81,6 +81,9 @@ in
client_max_body_size 512M;
allow ${globals.net.home-lan.vlans.home.cidrv4};
allow ${globals.net.home-lan.vlans.home.cidrv6};
# Firezone traffic
allow ${globals.net.home-lan.vlans.services.hosts.ward.ipv4};
allow ${globals.net.home-lan.vlans.services.hosts.ward.ipv6};
deny all;
'';
locations."/" = {