Iptables config added

This commit is contained in:
2024-07-16 16:02:19 +02:00
parent d711214927
commit 82787e86d7
2 changed files with 21 additions and 0 deletions

View File

@@ -1,4 +1,5 @@
- import_playbook: setup_ssh.yml
- import_playbook: setup_iptables.yml
- import_playbook: install_docker.yml
- import_playbook: install_vuls.yml
- import_playbook: install_caddy.yml

20
tasks/setup_iptables.yml Normal file
View File

@@ -0,0 +1,20 @@
- name: Edit iptables settings
hosts: athelas
become: true
tasks:
- name: Open needed ports
ansible.builtin.iptables:
chain: INPUT
protocol: tcp
in_interface: eth0
jump: ACCEPT
destination_ports:
- "22"
- "80"
- "443"
- name: Set INPUT policy to DROP
ansible.builtin.iptables:
chain: INPUT
policy: DROP