[IPTABLES] Add rules (Not tested)

This commit is contained in:
Florian RICHER 2023-05-20 23:54:16 +02:00
parent 5fa2b5bd2b
commit fcd5694fa8
14 changed files with 415 additions and 0 deletions

View file

@ -0,0 +1,25 @@
---
- name: Block all INPUT by default
ansible.builtin.iptables:
chain: INPUT
policy: DROP
comment: Block all INPUT by default
state: present
become: yes
- name: Block all OUTPUT by default
ansible.builtin.iptables:
chain: OUTPUT
policy: DROP
comment: Block all OUTPUT by default
state: present
become: yes
- name: Block all FORWARD by default
ansible.builtin.iptables:
chain: FORWARD
policy: DROP
comment: Block all FORWARD by default
state: present
become: yes