Skip to content

User ACL: Polish validation (scope: flow) #1651

Description

@qmonnet

In particular: Reject a config with a user ACL with scope: flow if there is any combination of expose blocks from the two ends of the peering that does not have masquerade or port forwarding (because we don't support scope: flow without flow tracking, currently only provided by masquerade or port forwarding).

Metadata

Metadata

Assignees

Labels

area/aclRelated to ACLs (Access Control Lists)

Type

Projects

No projects

Milestone

No milestone

Relationships

None yet

Development

No branches or pull requests

Issue actions