Add some more sane defaults to firewalld
This commit is contained in:
@@ -14,3 +14,27 @@
|
||||
state: started
|
||||
enabled: true
|
||||
|
||||
- name: Add ssh to firewalld
|
||||
ansible.posix.firewalld:
|
||||
service: ssh
|
||||
state: enabled
|
||||
permanent: true
|
||||
immediate: true
|
||||
offline: true
|
||||
|
||||
- name: Add dhcpv6-client to firewalld
|
||||
ansible.posix.firewalld:
|
||||
service: dhcpv6-client
|
||||
state: enabled
|
||||
permanent: true
|
||||
immediate: true
|
||||
offline: true
|
||||
|
||||
- name: Disallow cockpit firewalld
|
||||
ansible.posix.firewalld:
|
||||
service: cockpit
|
||||
state: disabled
|
||||
permanent: true
|
||||
immediate: true
|
||||
offline: true
|
||||
|
||||
|
||||
Reference in New Issue
Block a user