Manage common firewalld rules

Signed-off-by: Georg Pfuetzenreuter <mail@georg-pfuetzenreuter.net>
This commit is contained in:
Georg Pfuetzenreuter 2023-01-29 15:49:48 +01:00
parent e62080ae5b
commit e395f7f0a3
Signed by: Georg
GPG Key ID: 1ED2F138E7E6FF57
2 changed files with 13 additions and 0 deletions

View File

@ -11,6 +11,14 @@ managed_header_pound: |
{%- if grains['os'] == 'SUSE' %} {%- if grains['os'] == 'SUSE' %}
zypper: zypper:
refreshdb_force: False refreshdb_force: False
firewalld:
zones:
internal:
ports:
- comment: node_exporter
port: 9200
protocol: tcp
{%- endif %} {%- endif %}
mine_functions: mine_functions:

View File

@ -30,3 +30,8 @@ sshd_config:
Subsystem: sftp /usr/lib/ssh/sftp-server Subsystem: sftp /usr/lib/ssh/sftp-server
Banner: /etc/ssh/banner Banner: /etc/ssh/banner
firewalld:
zones:
internal:
services:
- ssh