diff options
| author | Guilhem Moulin <guilhem@fripost.org> | 2022-10-12 01:43:23 +0200 |
|---|---|---|
| committer | Guilhem Moulin <guilhem@fripost.org> | 2022-10-13 22:12:05 +0200 |
| commit | 85347041a04d17f6803100dd2cec9b489c9db47d (patch) | |
| tree | debeacab309c11d9f50a559044000a2e17371385 /roles/common/tasks/ipsec.yml | |
| parent | ab1f9b0eb7b3cd3c14ba4722a3c85507efde1fcd (diff) | |
Port baseline to Debian 11 (codename Bullseye).
Diffstat (limited to 'roles/common/tasks/ipsec.yml')
| -rw-r--r-- | roles/common/tasks/ipsec.yml | 1 |
1 files changed, 1 insertions, 0 deletions
diff --git a/roles/common/tasks/ipsec.yml b/roles/common/tasks/ipsec.yml index 4fc2ef7..917c687 100644 --- a/roles/common/tasks/ipsec.yml +++ b/roles/common/tasks/ipsec.yml @@ -1,25 +1,26 @@ - name: Install strongSwan apt: pkg={{ packages }} vars: packages: - strongswan-charon + - strongswan-starter # for the GCM and openssl plugins - libstrongswan-standard-plugins notify: - Update firewall - Restart IPsec - name: Auto-create a dedicated virtual subnet for IPsec template: src=etc/network/if-up.d/ipsec.j2 dest=/etc/network/if-up.d/ipsec owner=root group=root mode=0755 - name: Auto-deactivate the dedicated virtual subnet for IPsec file: src=../if-up.d/ipsec dest=/etc/network/if-down.d/ipsec owner=root group=root state=link force=yes - name: Configure IPsec template: src=etc/ipsec.conf.j2 |
