ansible-ffibk/roles/service-fastd-backbone/templates/fastd-backbone.conf.j2
2018-07-25 14:08:45 +02:00

25 lines
656 B
Django/Jinja

#
# {{ ansible_managed }}
#
log level warn;
hide ip addresses yes;
hide mac addresses yes;
method "aes128-ctr+umac";
interface "{{ item.0.id }}igvpn-{{ item.1.mtu }}";
bind {{ ansible_default_ipv4.address | ipaddr('public') }}:11{{ item.1.id }}{{ item.0.site_number }};
bind {{ ansible_default_ipv6.address | ipaddr('public') | ipwrap }}:11{{ item.1.id }}{{ item.0.site_number }};
include "secret.conf";
mtu {{ item.1.mtu }};
peer group "servers" {
include peers from "peers/gates";
include peers from "peers/services";
}
on up "/bin/systemctl reload networking";
status socket "/var/run/fastd-{{ item.0.id }}igvpn-{{ item.1.mtu }}.status";