summaryrefslogtreecommitdiff
path: root/roles/vpn/files/config/acl.json
blob: e92eb74a6f29acefe3f03fbfd36648780c19f146 (plain)
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
{
  "groups": {
    "group:admin": ["elizabeth"],
    "group:roomates": ["riley"],
    "group:friends": ["riley", "rain"],
    "group:rain": ["rain"],
    "group:sys": ["sys"]
  },
  "tagOwners": {
    "tag:prod": ["group:admin"],
    "tag:private": ["group:admin"],
    "tag:dev": ["group:admin"]
  },
  "acls": [
    {
      "action": "accept",
      "src": ["group:admin"],
      "dst": [
        "tag:dev:*",
        "tag:private:*",
        "tag:prod:*",
        "group:sys:*"
      ]
    },
    {
      "action": "accept",
      "src": ["group:sys"],
      "dst": ["group:sys:*", "10.128.0.0/9:*", "group:rain:*"]
    },
    {
      "action": "accept",
      "src": ["group:admin"],
      "dst": ["group:admin:*", "10.128.0.0/9:*"]
    },
    {
      "action": "accept",
      "src": ["group:roomates"],
      "dst": ["10.0.0.0/8:*"]
    },
    {
      "action": "accept",
      "src": ["group:friends"],
      "dst": ["group:sys:*"]
    },
    {
      "action": "accept",
      "src": ["group:rain"],
      "dst": ["group:rain:*"]
    }
  ]
}