Skip to content

Commit d83f873

Browse files
committed
Configure firewall in Ansible
1 parent d014d41 commit d83f873

File tree

2 files changed

+33
-0
lines changed

2 files changed

+33
-0
lines changed

collections/requirements.yml

Lines changed: 1 addition & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -1,4 +1,5 @@
11
---
22
collections:
3+
- name: ansible.posix
34
- name: community.general
45
- name: community.digitalocean

matplotlib.org.yml

Lines changed: 32 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -51,6 +51,38 @@
5151
- podman
5252
state: present
5353

54+
# Firewall setup
55+
# ##############
56+
- name: Enable firewall
57+
ansible.builtin.systemd:
58+
name: firewalld.service
59+
enabled: true
60+
state: started
61+
62+
- name: Allow SSH on firewall
63+
ansible.posix.firewalld:
64+
service: ssh
65+
permanent: true
66+
immediate: true
67+
offline: true
68+
state: enabled
69+
70+
- name: Allow HTTP on firewall
71+
ansible.posix.firewalld:
72+
service: http
73+
permanent: true
74+
immediate: true
75+
offline: true
76+
state: enabled
77+
78+
- name: Allow HTTPS on firewall
79+
ansible.posix.firewalld:
80+
service: https
81+
permanent: true
82+
immediate: true
83+
offline: true
84+
state: enabled
85+
5486
# Prepare and clone Git repositories
5587
# ##################################
5688
- name: Create Git repository directories

0 commit comments

Comments
 (0)