mirror of
https://github.com/de-it-krachten/ansible-role-firewall
synced 2026-05-14 11:41:59 +00:00
No description
- Jinja 100%
# [1.10.0](https://github.com/de-it-krachten/ansible-role-firewall/compare/v1.9.0...v1.10.0) (2026-03-15) ### Features * Added support for Fedora 43 ([ |
||
|---|---|---|
| .github/workflows | ||
| defaults | ||
| meta | ||
| molecule/default | ||
| tasks | ||
| .ansible-lint | ||
| .cicd | ||
| .cicd.overwrite | ||
| .collections | ||
| .gitignore | ||
| .releaserc.yml | ||
| .roles | ||
| .yamllint | ||
| CHANGELOG.md | ||
| README.md | ||
ansible-role-firewall
Role to open firewall ports for incoming traffic. Supports firewalld, ufw, iptables and Windows firewall
Dependencies
Roles
- deitkrachten.firewalld
- deitkrachten.iptables
- deitkrachten.ufw
Collections
- ansible.posix
- community.general
- community.windows
Platforms
Supported platforms
- Red Hat Enterprise Linux 81
- Red Hat Enterprise Linux 91
- Red Hat Enterprise Linux 101
- RockyLinux 8
- RockyLinux 9
- RockyLinux 10
- OracleLinux 8
- OracleLinux 9
- OracleLinux 10
- AlmaLinux 8
- AlmaLinux 9
- AlmaLinux 10
- Debian 11 (Bullseye)
- Debian 12 (Bookworm)
- Debian 13 (Trixie)
- Ubuntu 20.04 LTS
- Ubuntu 22.04 LTS
- Ubuntu 24.04 LTS
- Fedora 42
- Fedora 43
- Windows Server 2012 R21
- Windows Server 20161
- Windows Server 20191
- Windows Server 20221
Note: 1 : no automated testing is performed on these platforms
Role Variables
defaults/main.yml
# List of posts to open
firewall_ports: []
# List of unsupported firewalls
firewall_type_unsupported:
- nftables
# name of the windows firewall service
firewall_win_service_name: mpssvc
firewall_win_service_alt_name: MpsSvc
Example Playbook
molecule/default/converge.yml
- name: sample playbook for role 'firewall'
hosts: all
become: 'yes'
vars:
molecule_driver: '{{ lookup(''env'', ''MOLECULE_DRIVER_NAME'') }}'
firewall_ports:
- name: SSH
port: '22'
proto: tcp
- name: DNS
port: '53'
proto: udp
tasks:
- name: Include role 'firewall'
ansible.builtin.include_role:
name: firewall