[IPTABLES] Add rules (Not tested)

This commit is contained in:
Florian RICHER 2023-05-20 23:54:16 +02:00
parent 5fa2b5bd2b
commit fcd5694fa8
14 changed files with 415 additions and 0 deletions

View file

@ -0,0 +1,19 @@
---
- name: Accept FORWARD with tcp limit 1/second and tcp_flags
ansible.builtin.iptables:
chain: FORWARD
protocol: tcp
tcp_flags:
flags:
- SYN
- ACK
- FIN
- RST
flags_set:
- RST
limit: 1/second
jump: ACCEPT
comment: Accept FORWARD with tcp limit 1/second and tcp_flags
state: present
become: yes