Pages

Tuesday, 3 December 2019

EX294: module 'firewalld'

0. Online Help

$ ansible-doc firewalld
$ man firewalld
$ man firewalld.richlanguage

1. Example

- name: Enable http service, if not enabled
        firewalld:
            service: http
            immediate: yes
            permanent: yes
            state: enabled

 - name: Enable ssh access to local network
        firewalld:
            rich_rule: >
                rule family="ipv4"
                source address="192.168.66.0/24"
                service name="ssh" accept
            zone: public
            permanent: yes
            immediate: yes
            state: enabled


2. Key points

  • Be able to manage 'firewall-cmd' tool

No comments:

Post a Comment