ansible-roles/roles/postgresql_exporter/tasks/iptables.yml
2021-12-01 19:13:34 +01:00

10 lines
378 B
YAML

---
- name: Handle postgres exporter ports in the firewall
iptables_raw:
name: postgres-exporter
state: "{{ (pg_exporter_src_ip | length > 0) | ternary('present','absent') }}"
rules: "-A INPUT -m state --state NEW -p tcp --dport {{ pg_exporter_port }} -s {{ pg_exporter_src_ip | join(',') }} -j ACCEPT"
when: iptables_manage | default(True)
tags: firewall,pg