firewall: fix glaring errors
This commit is contained in:
parent
c6978b61ae
commit
9b4e047171
@ -22,8 +22,8 @@
|
|||||||
rule: allow
|
rule: allow
|
||||||
port: "{{ item.port }}"
|
port: "{{ item.port }}"
|
||||||
proto: "{{ item.proto | default('tcp') }}"
|
proto: "{{ item.proto | default('tcp') }}"
|
||||||
state: "{{ 'enabled' if item.name in group_names else 'disabled' }}"
|
|
||||||
src: "{{ item.src | default(default_firewall_src) }}"
|
src: "{{ item.src | default(default_firewall_src) }}"
|
||||||
|
when: item.name in group_names
|
||||||
with_items:
|
with_items:
|
||||||
# matrix ports
|
# matrix ports
|
||||||
- name: "synapse"
|
- name: "synapse"
|
||||||
@ -61,6 +61,9 @@
|
|||||||
proto: any
|
proto: any
|
||||||
src: "{{ local_subnet }}"
|
src: "{{ local_subnet }}"
|
||||||
|
|
||||||
|
- name: Deny all ports by default
|
||||||
|
community.general.ufw:
|
||||||
|
enabled: true
|
||||||
|
|
||||||
- name: Enable firewall service
|
- name: Enable firewall service
|
||||||
service:
|
service:
|
||||||
|
Loading…
Reference in New Issue
Block a user