Feature request: iptables-save: filter out lines via regex #31661
Labels
Execution-Module
Feature
new functionality including changes to functionality and code refactors, etc.
fixed-pls-verify
fix is linked, bug author to confirm fix
Platform
Relates to OS, containers, platform-based utilities like FS, system based apps
State-Module
Milestone
Description of Issue/Question
As a Salt user, I Should Be Able To configure a list of regex strings So That I Can perform an
iptables.save
module call (directly or via the iptables state) without saving certain entries persistently in order to prevent ephemeral rules created by systems such as Docker from adversely affecting iptables state on service restarts.^^ run-on sentence much?
Acceptance Criteria
GIVEN an iptables.save_filters list in yaml format within minion config/pillars/grains or master config
WHEN I perform a
iptables.save
module callTHEN the /etc/sysconfig/iptables file is saved with lines redacted matching regex strings in the configured filter.
The text was updated successfully, but these errors were encountered: