Restict allowed local IPs
This commit is contained in:
parent
43aed3e6b7
commit
0806fd0dac
|
@ -57,8 +57,9 @@ services:
|
||||||
watchtower:
|
watchtower:
|
||||||
version: '1.5.3'
|
version: '1.5.3'
|
||||||
|
|
||||||
sender_domains:
|
local_ipv4s:
|
||||||
- "{{ services.nextcloud.domain }}"
|
- '192.168.1.0/24'
|
||||||
|
- '192.168.8.0/24'
|
||||||
|
|
||||||
restic_volumes:
|
restic_volumes:
|
||||||
- "/var/run/docker.sock:/var/run/docker.sock:rw"
|
- "/var/run/docker.sock:/var/run/docker.sock:rw"
|
||||||
|
@ -67,3 +68,6 @@ restic_volumes:
|
||||||
- "{{ services.emby.volume }}:/mnt/volumes/emby:ro"
|
- "{{ services.emby.volume }}:/mnt/volumes/emby:ro"
|
||||||
- "{{ services.nextcloud.volume }}:/mnt/volumes/nextcloud:ro"
|
- "{{ services.nextcloud.volume }}:/mnt/volumes/nextcloud:ro"
|
||||||
- "{{ services.pihole.volume }}:/mnt/volumes/pi-hole:ro"
|
- "{{ services.pihole.volume }}:/mnt/volumes/pi-hole:ro"
|
||||||
|
|
||||||
|
sender_domains:
|
||||||
|
- "{{ services.nextcloud.domain }}"
|
||||||
|
|
|
@ -24,7 +24,7 @@
|
||||||
}
|
}
|
||||||
|
|
||||||
@local {
|
@local {
|
||||||
remote_ip 192.168.0.0/16
|
remote_ip {{ local_ipv4s | join(' ') }}
|
||||||
}
|
}
|
||||||
|
|
||||||
handle @local {
|
handle @local {
|
||||||
|
@ -85,7 +85,7 @@
|
||||||
}
|
}
|
||||||
|
|
||||||
@local {
|
@local {
|
||||||
remote_ip 192.168.0.0/16
|
remote_ip {{ local_ipv4s | join(' ') }}
|
||||||
}
|
}
|
||||||
|
|
||||||
handle @local {
|
handle @local {
|
||||||
|
|
Reference in a new issue