|
Server : LiteSpeed System : Linux server51.dnsbootclub.com 4.18.0-553.62.1.lve.el8.x86_64 #1 SMP Mon Jul 21 17:50:35 UTC 2025 x86_64 User : nandedex ( 1060) PHP Version : 8.1.33 Disable Function : NONE Directory : /opt/imunify360/venv/lib/python3.11/site-packages/im360/internals/core/rules/ |
"""Methods to generate logging iptables rules."""
from typing import Iterator
from im360.internals.core import firewall
from im360.internals.core.firewall import FirewallRules
from defence360agent.utils.validate import IPVersion
from .types_ import FirewallRule
def rules(
ipset_name: str, ip_version: IPVersion, prefix: str, priority: int
) -> Iterator[FirewallRule]:
"""Logging iptables rules for ..{sync,ip}.IPSet ipsets."""
if firewall.firewall_logging_enabled():
yield FirewallRule(
rule=FirewallRules.compose_rule(
FirewallRules.ipset(ipset_name),
action=FirewallRules.nflog_action(
group=FirewallRules.nflog_group(ip_version),
prefix=prefix,
),
),
priority=priority,
)