diff --git a/salt/firewall/iptables.jinja b/salt/firewall/iptables.jinja index 48a0808e7..acb6b0eaf 100644 --- a/salt/firewall/iptables.jinja +++ b/salt/firewall/iptables.jinja @@ -91,7 +91,7 @@ COMMIT -A INPUT -m conntrack --ctstate INVALID -j DROP -A INPUT -p icmp -j ACCEPT -A INPUT -j LOGGING -{% if GLOBALS.role in ['so-hypervisor', 'so-managerhyper'] -%} +{% if GLOBALS.role in ['so-hypervisor', 'so-managerhype'] -%} -A FORWARD -m state --state RELATED,ESTABLISHED -j ACCEPT -A FORWARD -i br0 -o br0 -j ACCEPT {%- endif %}