<feed xmlns='http://www.w3.org/2005/Atom'>
<title>fripost-ansible/roles/common/templates/etc/iptables, branch master</title>
<subtitle>Fripost ansible scripts</subtitle>
<link rel='alternate' type='text/html' href='http://git.fripost.org/fripost-ansible/'/>
<entry>
<title>Convert firewall to nftables.</title>
<updated>2020-01-23T04:57:01+00:00</updated>
<author>
<name>Guilhem Moulin</name>
<email>guilhem@fripost.org</email>
</author>
<published>2020-01-23T03:29:12+00:00</published>
<link rel='alternate' type='text/html' href='http://git.fripost.org/fripost-ansible/commit/?id=7641a5d5d152db349082b1d0ec93a40888b2ef8e'/>
<id>7641a5d5d152db349082b1d0ec93a40888b2ef8e</id>
<content type='text'>
Debian Buster uses the nftables framework by default.
</content>
<content type='xhtml'>
<div xmlns='http://www.w3.org/1999/xhtml'>
<pre>
Debian Buster uses the nftables framework by default.
</pre>
</div>
</content>
</entry>
<entry>
<title>MSA: Open 465/TCP for Email Submission over TLS.</title>
<updated>2019-03-19T01:27:42+00:00</updated>
<author>
<name>Guilhem Moulin</name>
<email>guilhem@fripost.org</email>
</author>
<published>2019-03-19T01:27:42+00:00</published>
<link rel='alternate' type='text/html' href='http://git.fripost.org/fripost-ansible/commit/?id=b16aa5bd33e5ca4bdc8a0734e8db1f42611aa75b'/>
<id>b16aa5bd33e5ca4bdc8a0734e8db1f42611aa75b</id>
<content type='text'>
See RFC 8314 sec. 3.3 "Cleartext Considered Obsolete".
</content>
<content type='xhtml'>
<div xmlns='http://www.w3.org/1999/xhtml'>
<pre>
See RFC 8314 sec. 3.3 "Cleartext Considered Obsolete".
</pre>
</div>
</content>
</entry>
<entry>
<title>Update 'IMAP', 'MSA' and 'LDAP-provider' roles to Debian Stretch.</title>
<updated>2018-12-09T19:25:40+00:00</updated>
<author>
<name>Guilhem Moulin</name>
<email>guilhem@fripost.org</email>
</author>
<published>2018-12-09T17:41:06+00:00</published>
<link rel='alternate' type='text/html' href='http://git.fripost.org/fripost-ansible/commit/?id=e2ddcfc51f66c2a52a401064eab005e793f148ee'/>
<id>e2ddcfc51f66c2a52a401064eab005e793f148ee</id>
<content type='text'>
</content>
<content type='xhtml'>
<div xmlns='http://www.w3.org/1999/xhtml'>
<pre>
</pre>
</div>
</content>
</entry>
<entry>
<title>Firewall: disable outgoing access to git:// remote servers.</title>
<updated>2018-12-09T19:25:39+00:00</updated>
<author>
<name>Guilhem Moulin</name>
<email>guilhem@fripost.org</email>
</author>
<published>2018-12-08T00:12:18+00:00</published>
<link rel='alternate' type='text/html' href='http://git.fripost.org/fripost-ansible/commit/?id=53c62a66705402235ef7077f5fab759b59c490cb'/>
<id>53c62a66705402235ef7077f5fab759b59c490cb</id>
<content type='text'>
We don't need it anymore as we use https:// these days.
</content>
<content type='xhtml'>
<div xmlns='http://www.w3.org/1999/xhtml'>
<pre>
We don't need it anymore as we use https:// these days.
</pre>
</div>
</content>
</entry>
<entry>
<title>Define new host "calima" serving Nextcloud.</title>
<updated>2018-12-03T02:43:48+00:00</updated>
<author>
<name>Guilhem Moulin</name>
<email>guilhem@fripost.org</email>
</author>
<published>2018-12-03T02:37:19+00:00</published>
<link rel='alternate' type='text/html' href='http://git.fripost.org/fripost-ansible/commit/?id=5ad9fc5e963b9a461f60799d7f185a9e2e13522f'/>
<id>5ad9fc5e963b9a461f60799d7f185a9e2e13522f</id>
<content type='text'>
</content>
<content type='xhtml'>
<div xmlns='http://www.w3.org/1999/xhtml'>
<pre>
</pre>
</div>
</content>
</entry>
<entry>
<title>IPsec: allow ISAKMP over IPv6.</title>
<updated>2018-12-03T02:43:41+00:00</updated>
<author>
<name>Guilhem Moulin</name>
<email>guilhem@fripost.org</email>
</author>
<published>2018-12-03T02:14:22+00:00</published>
<link rel='alternate' type='text/html' href='http://git.fripost.org/fripost-ansible/commit/?id=78a300a2430cb2652c7839cd35400cc22122c798'/>
<id>78a300a2430cb2652c7839cd35400cc22122c798</id>
<content type='text'>
</content>
<content type='xhtml'>
<div xmlns='http://www.w3.org/1999/xhtml'>
<pre>
</pre>
</div>
</content>
</entry>
<entry>
<title>Firewall: Allow DNS queries over TCP.</title>
<updated>2018-04-04T14:15:14+00:00</updated>
<author>
<name>Guilhem Moulin</name>
<email>guilhem@fripost.org</email>
</author>
<published>2018-04-04T14:15:05+00:00</published>
<link rel='alternate' type='text/html' href='http://git.fripost.org/fripost-ansible/commit/?id=7afde49053e95cf4125598927e8223007e393570'/>
<id>7afde49053e95cf4125598927e8223007e393570</id>
<content type='text'>
</content>
<content type='xhtml'>
<div xmlns='http://www.w3.org/1999/xhtml'>
<pre>
</pre>
</div>
</content>
</entry>
<entry>
<title>Perform recipient address verification on the MSA itself.</title>
<updated>2018-04-04T14:11:20+00:00</updated>
<author>
<name>Guilhem Moulin</name>
<email>guilhem@fripost.org</email>
</author>
<published>2018-04-04T14:11:20+00:00</published>
<link rel='alternate' type='text/html' href='http://git.fripost.org/fripost-ansible/commit/?id=b5a0be7a37e1bbc1aef2a7d1844a1da4aec5634f'/>
<id>b5a0be7a37e1bbc1aef2a7d1844a1da4aec5634f</id>
<content type='text'>
</content>
<content type='xhtml'>
<div xmlns='http://www.w3.org/1999/xhtml'>
<pre>
</pre>
</div>
</content>
</entry>
<entry>
<title>Webmail: don't allow outgoing TCP/993 connections.</title>
<updated>2017-06-15T09:20:55+00:00</updated>
<author>
<name>Guilhem Moulin</name>
<email>guilhem@fripost.org</email>
</author>
<published>2017-06-15T09:20:52+00:00</published>
<link rel='alternate' type='text/html' href='http://git.fripost.org/fripost-ansible/commit/?id=7d3a9a5340d5faae1347bf010c193c36e1771fa1'/>
<id>7d3a9a5340d5faae1347bf010c193c36e1771fa1</id>
<content type='text'>
We're going through IPsec to communicate with the IMAP server.
</content>
<content type='xhtml'>
<div xmlns='http://www.w3.org/1999/xhtml'>
<pre>
We're going through IPsec to communicate with the IMAP server.
</pre>
</div>
</content>
</entry>
<entry>
<title>Route all internal SMTP traffic through IPsec.</title>
<updated>2016-07-10T03:14:29+00:00</updated>
<author>
<name>Guilhem Moulin</name>
<email>guilhem@fripost.org</email>
</author>
<published>2016-07-10T03:13:33+00:00</published>
<link rel='alternate' type='text/html' href='http://git.fripost.org/fripost-ansible/commit/?id=bf960a066466d7719ada8fe7bc3dec99d237b88a'/>
<id>bf960a066466d7719ada8fe7bc3dec99d237b88a</id>
<content type='text'>
</content>
<content type='xhtml'>
<div xmlns='http://www.w3.org/1999/xhtml'>
<pre>
</pre>
</div>
</content>
</entry>
</feed>
