Iptables config added
This commit is contained in:
@@ -1,4 +1,5 @@
|
||||
- import_playbook: setup_ssh.yml
|
||||
- import_playbook: setup_iptables.yml
|
||||
- import_playbook: install_docker.yml
|
||||
- import_playbook: install_vuls.yml
|
||||
- import_playbook: install_caddy.yml
|
||||
|
||||
20
tasks/setup_iptables.yml
Normal file
20
tasks/setup_iptables.yml
Normal file
@@ -0,0 +1,20 @@
|
||||
- name: Edit iptables settings
|
||||
hosts: athelas
|
||||
become: true
|
||||
tasks:
|
||||
|
||||
- name: Open needed ports
|
||||
ansible.builtin.iptables:
|
||||
chain: INPUT
|
||||
protocol: tcp
|
||||
in_interface: eth0
|
||||
jump: ACCEPT
|
||||
destination_ports:
|
||||
- "22"
|
||||
- "80"
|
||||
- "443"
|
||||
|
||||
- name: Set INPUT policy to DROP
|
||||
ansible.builtin.iptables:
|
||||
chain: INPUT
|
||||
policy: DROP
|
||||
Reference in New Issue
Block a user