Ansible roles
You can not select more than 25 topics Topics must start with a letter or number, can include dashes ('-') and can be up to 35 characters long.

16 lines
566 B

---
- name: Handle crowdsec port in the firewall
iptables_raw:
name: "{{ item.name }}"
state: "{{ (item.src_ip | length > 0) | ternary('present','absent') }}"
rules: "-A INPUT -m state --state NEW -p tcp --dport {{ item.port }} -s {{ item.src_ip | join(',') }} -j ACCEPT"
loop:
- name: crowdsec_lapi_port
port: "{{ crowdsec_lapi_port }}"
src_ip: "{{ crowdsec_lapi_src_ip }}"
- name: crowdsec_prometheus_port
port: "{{ crowdsec_prometheus_port }}"
src_ip: "{{ crowdsec_prometheus_src_ip }}"
tags: firewall,crowdsec