view mod_secure_interfaces/mod_secure_interfaces.lua @ 2465:bd69ffe071e6

mod_firewall: Add 'TO SELF' check ('NOT TO?' worked until commit 9159f9166893)
author Matthew Wild <mwild1@gmail.com>
date Thu, 26 Jan 2017 18:36:15 +0000
parents a464261deba8
children 55f3ab952d06
line wrap: on
line source

local secure_interfaces = module:get_option_set("secure_interfaces", { "127.0.0.1" });

module:hook("stream-features", function (event)
	local session = event.origin;
	if session.type ~= "c2s_unauthed" then return; end
	local socket = session.conn:socket();
	if not socket.getsockname then return; end
	local localip = socket:getsockname();
	if secure_interfaces:contains(localip) then
		module:log("debug", "Marking session from %s as secure", session.ip or "[?]");
		session.secure = true;
	end
end, 2500);