Files
EvoBGP/docs/firewall.md
T
DenozordecandCursor 8267141136
CI / changes (push) Successful in 5s
CI / commitlint (push) Skipped
CI / openapi (push) Successful in 38s
CI / web (push) Successful in 55s
CI / go (push) Successful in 1m4s
CI / bird2 (push) Successful in 17s
CI / release (push) Successful in 4m17s
ci(gitea): point registry and remotes at git.shx.one
Перевести CI, semantic-release, bake и compose с git.shts.su на git.shx.one.

Co-authored-by: Cursor <[email protected]>
2026-08-17 16:43:39 +07:00

973 B

Firewall (deprecated in EvoBGP)

Hard cutover: подсистема firewall перенесена в отдельный продукт EvoFirewall.

Все HTTP-эндпоинты /v1/firewall/* в EvoBGP отвечают 410 Gone.

Таблицы firewall_client / firewall_rule в БД оставлены (не удаляются миграциями) для истории; API/UI/scripts больше не обслуживают их.

Миграция клиентов

  1. Разверните EvoFirewall (auth-portal app id fw).
  2. Переустановите агенты one-liner'ом EvoFirewall (/v1/agent/install.sh).
  3. Для списков по community создайте IP list type evobgp_community и укажите EVOBGP_API_URL + token в настройках EvoFirewall.

Старые токены evobgp_fw_* не переносятся — только re-enroll.