Add some more sane defaults to firewalld
This commit is contained in:
@@ -14,3 +14,27 @@
|
|||||||
state: started
|
state: started
|
||||||
enabled: true
|
enabled: true
|
||||||
|
|
||||||
|
- name: Add ssh to firewalld
|
||||||
|
ansible.posix.firewalld:
|
||||||
|
service: ssh
|
||||||
|
state: enabled
|
||||||
|
permanent: true
|
||||||
|
immediate: true
|
||||||
|
offline: true
|
||||||
|
|
||||||
|
- name: Add dhcpv6-client to firewalld
|
||||||
|
ansible.posix.firewalld:
|
||||||
|
service: dhcpv6-client
|
||||||
|
state: enabled
|
||||||
|
permanent: true
|
||||||
|
immediate: true
|
||||||
|
offline: true
|
||||||
|
|
||||||
|
- name: Disallow cockpit firewalld
|
||||||
|
ansible.posix.firewalld:
|
||||||
|
service: cockpit
|
||||||
|
state: disabled
|
||||||
|
permanent: true
|
||||||
|
immediate: true
|
||||||
|
offline: true
|
||||||
|
|
||||||
|
|||||||
Reference in New Issue
Block a user