Compare commits
1 commit
Author | SHA1 | Date | |
---|---|---|---|
bb9f2167fb |
3 changed files with 12 additions and 10 deletions
|
@ -7,7 +7,7 @@ hardening_sshd_tcp_forward: false
|
|||
hardening_sshd_legal_banner: false
|
||||
hardening_sshd_permissions_set_sticky_bit: true
|
||||
|
||||
hardening_sysctl_vm_swappiness: 0
|
||||
hardening_sysctl_vm_swappiness: 15
|
||||
hardening_sysctl_disable_ipv6: false
|
||||
|
||||
hardening_modprobe_disable_list:
|
||||
|
|
|
@ -1 +0,0 @@
|
|||
kernel.core_pattern=|/bin/false
|
|
@ -84,13 +84,16 @@
|
|||
|
||||
- name: Configure iptables
|
||||
when:
|
||||
- 'zoreide_enabled is true'
|
||||
- "zoreide_enabled is true"
|
||||
- "ansible_facts.services['iptables.service'] is defined"
|
||||
block:
|
||||
- name: Allow related and established connections
|
||||
ansible.builtin.iptables:
|
||||
chain: INPUT
|
||||
protocol: udp
|
||||
destination_port: "{{ zoreide_ha_port }}"
|
||||
ctstate: NEW
|
||||
syn: match
|
||||
jump: ACCEPT
|
||||
comment: Zoreide HA Port
|
||||
|
||||
|
|
Loading…
Reference in a new issue