In order for the new SDN ipsets to show up we need to adapt the
existing API endpoints so they read the SDN configuration.

Signed-off-by: Stefan Hanreich <s.hanre...@proxmox.com>
---
 src/PVE/API2/Firewall/Cluster.pm | 5 ++++-
 src/PVE/API2/Firewall/VM.pm      | 3 ++-
 2 files changed, 6 insertions(+), 2 deletions(-)

diff --git a/src/PVE/API2/Firewall/Cluster.pm b/src/PVE/API2/Firewall/Cluster.pm
index f91257e..e519ab9 100644
--- a/src/PVE/API2/Firewall/Cluster.pm
+++ b/src/PVE/API2/Firewall/Cluster.pm
@@ -257,7 +257,10 @@ __PACKAGE__->register_method({
 
        my $conf = PVE::Firewall::load_clusterfw_conf();
 
-       return PVE::Firewall::Helpers::collect_refs($conf, $param->{type}, 
"dc");
+       my $cluster_refs = PVE::Firewall::Helpers::collect_refs($conf, 
$param->{type}, "dc");
+       my $sdn_refs = PVE::Firewall::Helpers::collect_refs($conf->{sdn}, 
$param->{type}, "sdn");
+
+       return [@$sdn_refs, @$cluster_refs];
     }});
 
 1;
diff --git a/src/PVE/API2/Firewall/VM.pm b/src/PVE/API2/Firewall/VM.pm
index 3400375..75b4345 100644
--- a/src/PVE/API2/Firewall/VM.pm
+++ b/src/PVE/API2/Firewall/VM.pm
@@ -284,9 +284,10 @@ sub register_handlers {
            my $fw_conf = PVE::Firewall::load_vmfw_conf($cluster_conf, 
$rule_env, $param->{vmid});
 
            my $dc_refs = PVE::Firewall::Helpers::collect_refs($cluster_conf, 
$param->{type}, 'dc');
+           my $sdn_refs = 
PVE::Firewall::Helpers::collect_refs($cluster_conf->{sdn}, $param->{type}, 
'sdn');
            my $vm_refs = PVE::Firewall::Helpers::collect_refs($fw_conf, 
$param->{type}, 'guest');
 
-           return [@$dc_refs, @$vm_refs];
+           return [@$dc_refs, @$sdn_refs, @$vm_refs];
        }});
 }
 
-- 
2.39.5


_______________________________________________
pve-devel mailing list
pve-devel@lists.proxmox.com
https://lists.proxmox.com/cgi-bin/mailman/listinfo/pve-devel

Reply via email to