ansible-roles/roles/nginx/tasks/iptables.yml

8 lines
344 B
YAML

---
- name: Handle HTTP and HTTPS ports
iptables_raw:
name: nginx_ports
state: "{{ (nginx_src_ip | length > 0) | ternary('present','absent') }}"
rules: "-A INPUT -m state --state NEW -p tcp -m multiport --dports {{ (nginx_ports + nginx_ssl_ports) | join(',') }} -s {{ nginx_src_ip | join(',') }} -j ACCEPT\n"
tags: firewall,web