0. Online Help
$ ansible-doc firewalld
$ man firewalld
$ man firewalld.richlanguage
1. Example
- name: Enable http service, if not enabled
firewalld:
service: http
immediate: yes
permanent: yes
state: enabled
- name: Enable ssh access to local network
firewalld:
rich_rule: >
rule family="ipv4"
source address="192.168.66.0/24"
service name="ssh" accept
zone: public
permanent: yes
immediate: yes
state: enabled
2. Key points
- Be able to manage 'firewall-cmd' tool
No comments:
Post a Comment