ansible-base/roles/client_iptables/README.md

1.1 KiB

Ansible Role: client iptables

This role defines iptables rules for a GNU/Linux server (but NOT for routers).

Requirements

WARNING : do not apply this role on routers !!!

This role assumes you have a clean iptables configuration on your host (else, you may need to flush the current rules).

Role Variables

All variables and default values are defined in defaults/main.yml :

# All authorized TCP ports
tcp_authorized_ports:
  - 22

# All authorized UDP ports
udp_authorized_ports: []

# All incoming authorized IP
ip_authorized: []

# Set to false to avoid iptables configure with this role
configure_iptables: true

# Iptables save files (Ipv4 and IPv6)
iptables_save_file: /etc/iptables/rules.v4
ip6tables_save_file: /etc/iptables/rules.v6

Dependencies

None.

Example Playbook

- hosts: all
  roles:
    - client_iptables

License

BSD

Author Information

This role was created in 2020 by Nemo.