diff --git a/tasks/roles/setup_iptables/tasks/main.yml b/tasks/roles/setup_iptables/tasks/main.yml index c486da3..a55b909 100644 --- a/tasks/roles/setup_iptables/tasks/main.yml +++ b/tasks/roles/setup_iptables/tasks/main.yml @@ -11,6 +11,13 @@ - "443" - "80" +- name: Accept connection on lo (for Caddy <-> usertwist communication) + ansible.builtin.iptables: + chain: INPUT + protocol: tcp + in_interface: lo + jump: ACCEPT + - name: Set INPUT policy to DROP ansible.builtin.iptables: chain: INPUT