From 8e5c279f7cecf29589835e74602155b9afc430d8 Mon Sep 17 00:00:00 2001 From: Christian Pointner Date: Wed, 15 Jun 2022 19:35:36 +0200 Subject: add simple handling for nftable rulesets in base role --- roles/network/nftables/base/tasks/main.yml | 12 ++++++++++++ 1 file changed, 12 insertions(+) (limited to 'roles/network/nftables/base/tasks') diff --git a/roles/network/nftables/base/tasks/main.yml b/roles/network/nftables/base/tasks/main.yml index 46c7d0b5..3f268681 100644 --- a/roles/network/nftables/base/tasks/main.yml +++ b/roles/network/nftables/base/tasks/main.yml @@ -8,6 +8,18 @@ path: /etc/nftables.d state: directory +- name: generate rules files + loop: "{{ nftables_base_rules | dict2items }}" + loop_control: + label: "{{ item.key }}" + copy: + content: | + # Ansible managed + + {{ item.value }} + dest: "/etc/nftables.d/{{ item.key }}.nft" + notify: reload nftables + - name: generate base nft script copy: content: | -- cgit v1.2.3