infrastructure/ansible/roles/ingress/tasks/firewall.yml

21 lines
361 B
YAML

- name: Install nftables
package:
name: nftables
become: true
- name: Copy firewall config
template:
src: files/nftables.conf
dest: /etc/nftables.conf
validate: nft -c -f %s
mode: "644"
become: true
notify: reload nftables
- name: Enable nftables
service:
name: nftables
enabled: true
state: started
become: true