[pve-devel] [PATCH firewall 2/2] use $security_group_name_pattern in iptables_get_chains

Wolfgang Bumiller w.bumiller at proxmox.com
Thu Jan 7 14:11:35 CET 2016


Fixes #859
---
 src/PVE/Firewall.pm | 2 +-
 1 file changed, 1 insertion(+), 1 deletion(-)

diff --git a/src/PVE/Firewall.pm b/src/PVE/Firewall.pm
index 3bb4d68..8976bad 100644
--- a/src/PVE/Firewall.pm
+++ b/src/PVE/Firewall.pm
@@ -1518,7 +1518,7 @@ sub iptables_get_chains {
 	return 1 if $name =~ m/^veth\d+i\d+-(?:IN|OUT)$/;
 
 	return 1 if $name =~ m/^fwbr\d+(v\d+)?-(?:FW|IN|OUT|IPS)$/;
-	return 1 if $name =~ m/^GROUP-(?:[^\s\-]+)-(?:IN|OUT)$/;
+	return 1 if $name =~ m/^GROUP-(?:$security_group_name_pattern)-(?:IN|OUT)$/;
 
 	return undef;
     };
-- 
2.1.4





More information about the pve-devel mailing list