Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

firewall: add role to configure ufw firewall #7

Open
wants to merge 1 commit into
base: master
Choose a base branch
from

Conversation

ljmf00
Copy link
Member

@ljmf00 ljmf00 commented Nov 3, 2020

Signed-off-by: Luís Ferreira [email protected]


  • Test configuration locally

@ljmf00 ljmf00 changed the title firewall: add role to configure ufw firewall WIP: firewall: add role to configure ufw firewall Nov 3, 2020
@ljmf00
Copy link
Member Author

ljmf00 commented Nov 3, 2020

Need local testing for firewall_forward_packets to make sure will not mess up with VPN.

@@ -0,0 +1,43 @@
---

- name: Install 'ufw'
Copy link
Member

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Keep the style, lowercase and don't quote ufw.

Copy link
Member Author

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

done

ufw:
policy: deny

- name: Set allow default policy for forwarding
Copy link
Member

@FFY00 FFY00 Nov 8, 2020

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Shouldn't we be installing our own config instead of editing this?

Copy link
Member Author

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

I added a template to build our own config, can you review?

@ljmf00 ljmf00 changed the title WIP: firewall: add role to configure ufw firewall firewall: add role to configure ufw firewall Nov 10, 2020
@ljmf00
Copy link
Member Author

ljmf00 commented Nov 10, 2020

This is no longer in WIP state. I tested this config on the server and seems working fine.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

Successfully merging this pull request may close these issues.

2 participants