diff --git a/roles/base/templates/iptables/iptables b/roles/base/templates/iptables/iptables index d55d74bd8e..d512745a29 100644 --- a/roles/base/templates/iptables/iptables +++ b/roles/base/templates/iptables/iptables @@ -103,7 +103,11 @@ {% if proxy_tcp_ports is defined %} {% for port in proxy_tcp_ports %} {% for proxy in (groups['proxies'] + groups['proxies_internal']) %} +{% if hostvars[proxy]['datacenter'] == "phx2" and 'ansible_eth0' in hostvars[proxy] %} +-A INPUT -p tcp -m tcp --dport {{ port }} --src {{ hostvars[proxy]['ansible_eth0']['ipv4']['address'] }} -j ACCEPT +{% else %} -A INPUT -p tcp -m tcp --dport {{ port }} --src {{ hostvars[proxy]['ansible_tun0']['ipv4']['address'] }} -j ACCEPT +{% endif %} {% endfor %} # nagios -A INPUT -p tcp -m tcp --dport {{ port }} --src 10.5.126.41 -j ACCEPT