summaryrefslogtreecommitdiffstats
path: root/roles/common/templates/etc
diff options
context:
space:
mode:
Diffstat (limited to 'roles/common/templates/etc')
-rw-r--r--roles/common/templates/etc/iptables/services.j213
1 files changed, 13 insertions, 0 deletions
diff --git a/roles/common/templates/etc/iptables/services.j2 b/roles/common/templates/etc/iptables/services.j2
new file mode 100644
index 0000000..b1b7f0f
--- /dev/null
+++ b/roles/common/templates/etc/iptables/services.j2
@@ -0,0 +1,13 @@
+# {{ ansible_managed }}
+# Do NOT edit this file directly!
+#
+# direction protocol destination port source port
+# (in|out|inout)[46]? (tcp|udp|..) (port|port:port|port,port) (port|port:port|port,port)
+
+inout udp 500 500 # ISAKMP
+
+in tcp {{ ansible_ssh_port|default('22') }} # SSH
+
+out tcp 80,443 # HTTP/HTTPS
+out udp 53 # DNS
+out udp 67 # DHCP