diff options
author | Guilhem Moulin <guilhem@fripost.org> | 2015-05-14 23:38:46 +0200 |
---|---|---|
committer | Guilhem Moulin <guilhem@fripost.org> | 2015-06-07 02:53:45 +0200 |
commit | 824eb9f92f8ed8b4de65d3a32b2d3f0cee24925b (patch) | |
tree | 942437f6e113349562699524036f3105d82ecc45 /roles | |
parent | 9d3a5026bb8bfec54eedc9c6f4603d8073d08429 (diff) |
Allow outgoing HKP and WHOIS traffic on the LDAP provider.
Diffstat (limited to 'roles')
-rw-r--r-- | roles/common/templates/etc/iptables/services.j2 | 5 |
1 files changed, 5 insertions, 0 deletions
diff --git a/roles/common/templates/etc/iptables/services.j2 b/roles/common/templates/etc/iptables/services.j2 index 1ff8778..25a20f7 100644 --- a/roles/common/templates/etc/iptables/services.j2 +++ b/roles/common/templates/etc/iptables/services.j2 @@ -42,20 +42,25 @@ out tcp {{ postfix_instance.out.port }} {% if 'IMAP' in group_names %} in tcp 993 # IMAPS in tcp 4190 # ManageSieve {% endif %} {% if 'MDA' in group_names and 'MX' not in group_names %} in tcp {{ postfix_instance.IMAP.port }} {% endif %} {% if 'lists' in group_names and 'MX' not in group_names %} in tcp {{ postfix_instance.lists.port }} {% endif %} {% if 'MSA' in group_names %} in tcp 587 # SMTP-AUTH {% endif %} {% if 'webmail' in group_names or 'lists' in group_names %} in tcp 80,443 # HTTP/HTTPS {% if 'IMAP' not in group_names %} out tcp 993 # IMAP out tcp 4190 {% endif %} {% endif %} + +{% if 'LDAP-provider' in group_names %} +out tcp 11371 # HKP +out tcp 43 # WHOIS +{% endif %} |