Page MenuHomeVyOS Platform

Extend remote-group to use a local file
Open, LowPublic

Description

It would be very helpful to extend the remote-group mechanism in the firewall to provide the list of IP's/CIDR's from a local file vs. a remote URL. I have 2 custom scripts I'm using to generate a properly formatted .TXT file with the list of IP's/CIDR's, and with the current capabilities of remote-group, I have to run a local HTTP server on the VyOS instance since remote-group will only accept an HTTP/HTTPS-based URL. Something like the following to access those files:

set firewall group remote-group test url 'local:///config/scripts/custom/remgrp-allowed-city-cidrs.txt'

URL scheme "local:" is not allowed


Invalid HTTP(S) URL format
Value validation failed
Set failed

set firewall group remote-group test url 'file:///config/scripts/custom/remgrp-allowed-city-cidrs.txt'

URL scheme "file:" is not allowed


Invalid HTTP(S) URL format
Value validation failed
Set failed

I've provided other information on how this is running per this forum page: https://forum.vyos.io/t/using-a-local-file-with-remote-group/17378

Details

Version
-
Is it a breaking change?
Perfectly compatible
Issue type
Feature (new functionality)