Remove firewall rules from public servers
This commit is contained in:
parent
04b209a829
commit
0ecec60818
|
@ -10,22 +10,22 @@
|
||||||
[pub_cloud]
|
[pub_cloud]
|
||||||
sapt-labc-pub01
|
sapt-labc-pub01
|
||||||
|
|
||||||
# [mon_cloud]
|
|
||||||
# sapt-labc-mon01
|
|
||||||
|
|
||||||
# [sec_cloud]
|
# [sec_cloud]
|
||||||
# sapt-labc-sec01
|
# sapt-labc-sec01
|
||||||
|
|
||||||
[cloud:children]
|
[cloud:children]
|
||||||
pub_cloud
|
pub_cloud
|
||||||
# mon_cloud
|
|
||||||
# sec_cloud
|
# sec_cloud
|
||||||
|
|
||||||
[prx_shrd]
|
[prx_shrd]
|
||||||
sapt-labr-prx01
|
sapt-labr-prx01
|
||||||
|
|
||||||
|
# [mon_shrd]
|
||||||
|
# sapt-labr-mon01
|
||||||
|
|
||||||
[shared:children]
|
[shared:children]
|
||||||
prx_shrd
|
prx_shrd
|
||||||
|
# mon_shrd
|
||||||
|
|
||||||
[app_prod]
|
[app_prod]
|
||||||
sapt-labp-app01
|
sapt-labp-app01
|
||||||
|
@ -58,15 +58,15 @@ mda_stage
|
||||||
[publicservers:children]
|
[publicservers:children]
|
||||||
pub_cloud
|
pub_cloud
|
||||||
|
|
||||||
# [monitorservers:children]
|
|
||||||
# mon_cloud
|
|
||||||
|
|
||||||
# [securityservers:children]
|
# [securityservers:children]
|
||||||
# sec_cloud
|
# sec_cloud
|
||||||
|
|
||||||
[proxyservers:children]
|
[proxyservers:children]
|
||||||
prx_shrd
|
prx_shrd
|
||||||
|
|
||||||
|
# [monitorservers:children]
|
||||||
|
# mon_shrd
|
||||||
|
|
||||||
[appservers:children]
|
[appservers:children]
|
||||||
app_prod
|
app_prod
|
||||||
app_stage
|
app_stage
|
||||||
|
|
|
@ -56,8 +56,7 @@
|
||||||
state: enabled
|
state: enabled
|
||||||
|
|
||||||
- name: Firewall rules for proxy & public servers
|
- name: Firewall rules for proxy & public servers
|
||||||
when: hostname in groups['proxyservers'] or
|
when: hostname in groups['proxyservers']
|
||||||
hostname in groups['publicservers']
|
|
||||||
notify: Reload firewalld
|
notify: Reload firewalld
|
||||||
block:
|
block:
|
||||||
- name: Allow incoming connections to HTTP port in zones 'public' and 'dmz'
|
- name: Allow incoming connections to HTTP port in zones 'public' and 'dmz'
|
||||||
|
|
Loading…
Reference in a new issue