Skip to content

Commit 1461d6d

Browse files
Doc: document IP allow filter for remap. (#9626)
1 parent 28e883d commit 1461d6d

File tree

2 files changed

+17
-0
lines changed

2 files changed

+17
-0
lines changed

doc/admin-guide/files/ip_allow.yaml.en.rst

Lines changed: 2 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -14,6 +14,8 @@
1414
.. include:: ../../common.defs
1515
.. highlight:: yaml
1616

17+
.. _ip-allow:
18+
1719
===============
1820
ip_allow.yaml
1921
===============

doc/admin-guide/files/remap.config.en.rst

Lines changed: 15 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -496,6 +496,21 @@ mapping rules. (It is activated before any mappings and is never
496496
deactivated.) The filter `local_only` will only be applied to the
497497
second mapping.
498498

499+
Implict IPAllow filter
500+
======================
501+
502+
To allow control of :ref:`IP Allow<ip-allow>` it is treated as an implicitly active and named
503+
filter. When this filter is active IP Allow checks are done before remap. To prevent this for
504+
specific remap rules, this filter, named "ip_allow", must be disabled. The common way of doing this
505+
would be ::
506+
507+
.deactivatefilter ip_allow
508+
map ...
509+
map ...
510+
.activateefilter ip_allow
511+
512+
Note this entirely disables IP Allow checks for those remap rules.
513+
499514
NextHop Selection Strategies
500515
============================
501516

0 commit comments

Comments
 (0)