mirror of
https://git.lapiole.org/dani/ansible-roles.git
synced 2025-08-07 09:07:03 +02:00
Update to 2021-12-01 19:13
This commit is contained in:
13
roles/elasticsearch/tasks/iptables.yml
Normal file
13
roles/elasticsearch/tasks/iptables.yml
Normal file
@@ -0,0 +1,13 @@
|
||||
---
|
||||
|
||||
- name: Handle Elasticsearch port
|
||||
iptables_raw:
|
||||
name: "{{ item.name }}"
|
||||
state: "{{ (item.src_ip | length > 0) | ternary('present','absent') }}"
|
||||
rules: "-A INPUT -m state --state NEW -p tcp --dport {{ item.port }} -s {{ item.src_ip | join(',') }} -j ACCEPT"
|
||||
loop:
|
||||
- port: "{{ es_port }}"
|
||||
name: es_port
|
||||
src_ip: "{{ es_src_ip }}"
|
||||
tags: firewall,es
|
||||
|
Reference in New Issue
Block a user