SaltStack Formula to set up and configure Firewalld, dynamically managed firewall with support for network/firewall zones to define the trust level of network connections or interfaces https://github.com/saltstack-formulas/firewalld-formula/
Go to file
Niels Abspoel b607a7abdd
Merge pull request #15 from Angelo-Verona/master
Default file permission for firewalld.conf
2017-12-28 11:08:57 +01:00
firewalld Default file permission for firewalld.conf is 644 not 640 (CentOS). Even if I think that "others" don't need to read that, it always shows up as file with non-default permissions from default rpm package in security scans. e.g. "rpm -Va |grep ^.M" or more salty way: "salt '*' pkg.verify" / salt '*' pkg.modified firewalld mode=True; manual fix e.g. rpm --setperms firewalld-*.el7.noarch 2017-12-28 02:45:05 +01:00
test/integration/default/serverspec Add basic test suite 2017-03-10 11:30:39 -07:00
.gitignore Add basic test suite 2017-03-10 11:30:39 -07:00
.kitchen.yml Reload, rather than restart, the FirewallD service 2017-03-11 12:51:12 -07:00
LICENSE Initial commit. 2014-08-23 16:44:48 +02:00
pillar.example.sls implement direct rules 2016-09-13 23:25:51 +02:00
README.rst Updated Readme, 2015-05-25 15:31:57 +02:00
VERSION add ipset support for firewalld 2016-09-03 21:43:40 +02:00

firewalld-formula

Salt Stack Formula to set up and configure Firewalld, dynamically managed firewall with support for network/firewall zones to define the trust level of network connections or interfaces

NOTICE BEFORE YOU USE

TODO

  • configure local pre-commit hooks (code syntax check based on file extension, check for ugly utf-8 mac os white space)

Instructions

  1. Add this repository as a GitFS backend in your Salt master config.
  2. Configure your Pillar top file (/srv/pillar/top.sls), see pillar.example
  3. Include this Formula within another Formula or simply define your needed states within the Salt top file (/srv/salt/top.sls).

Available states

firewalld -------Manage firewalld

Additional resources

None

Formula Dependencies

None

Contributions

Contributions are always welcome. All development guidelines you have to know are

  • write clean code (proper YAML+Jinja syntax, no trailing whitespaces, no empty lines with whitespaces, LF only)
  • set sane default settings
  • test your code
  • update README.rst doc

Salt Compatibility

Tested with:

  • 2014.1.x
  • 2015.5.x

OS Compatibility

Tested with:

  • CentOS 7
  • Archlinux