.
This commit is contained in:
@@ -9,6 +9,12 @@ Configure wireguard service:
|
||||
- ports:
|
||||
- {{ pillar['wireguard']['port'] }}/udp
|
||||
|
||||
Configure container registry service:
|
||||
firewalld.service:
|
||||
- name: registry
|
||||
- ports:
|
||||
- 5000/tcp
|
||||
|
||||
Configure firewalld for external interface:
|
||||
firewalld.present:
|
||||
- name: external
|
||||
@@ -45,6 +51,7 @@ Configure firewalld for internal network:
|
||||
- https
|
||||
- dns
|
||||
- ntp
|
||||
- registry
|
||||
|
||||
Configure firewalld for public networks:
|
||||
firewalld.present:
|
||||
@@ -74,6 +81,7 @@ Configure firewalld for public networks:
|
||||
- https
|
||||
- dns
|
||||
- ntp
|
||||
- registry
|
||||
|
||||
|
||||
Configure firewalld for airgap networks:
|
||||
@@ -104,6 +112,7 @@ Configure firewalld for airgap networks:
|
||||
- https
|
||||
- dns
|
||||
- ntp
|
||||
- registry
|
||||
|
||||
Add forwarding on Internal zone:
|
||||
cmd.run:
|
||||
|
Reference in New Issue
Block a user