Enable and run all basic roles

This commit is contained in:
Thomas Kleinendorst 2024-11-19 13:25:46 +01:00
parent 23166bc220
commit 71f927e732
4 changed files with 19 additions and 69 deletions

View file

@ -13,9 +13,9 @@
become: true
- role: geerlingguy.docker
become: true
# - role: hostname
# - role: basic-intalls
# - role: user
- role: hostname
- role: packages
- role: user
# - role: cloudflare-ddns
# - role: cloudflared
# - role: nginx

View file

@ -1,6 +0,0 @@
---
- name: Restart ufw
become: true
ansible.builtin.systemd:
name: ufw.service
state: restarted

View file

@ -1,60 +0,0 @@
---
- name: Install basic packages
become: true
ansible.builtin.apt:
pkg:
- git
- vim
- dnsutils
- rsyslog
# - ufw
- podman
- snapd
state: present
- name: Install Snap Core
become: true
community.general.snap:
name: core
state: present
# - name: Set default policy (incoming)
# become: true
# community.general.ufw:
# direction: incoming
# policy: deny
# notify: Restart ufw
# - name: Set default policy (outgoing)
# become: true
# community.general.ufw:
# direction: outgoing
# policy: allow
# notify: Restart ufw
# - name: Set default policy (routed)
# become: true
# community.general.ufw:
# direction: routed
# policy: allow
# notify: Restart ufw
# - name: Allow forwarding in ufw
# become: true
# ansible.builtin.lineinfile:
# path: /etc/ufw/sysctl.conf
# regexp: '^#net/ipv4/ip_forward=1$'
# line: 'net/ipv4/ip_forward=1'
# notify: Restart ufw
# - name: Allow forwarding in sysctl
# become: true
# ansible.builtin.lineinfile:
# path: /etc/sysctl.conf
# regexp: '^#net\.ipv4\.ip_forward=1$'
# line: net.ipv4.ip_forward=1
# - name: Allow all access to ssh
# become: true
# community.general.ufw:
# rule: allow
# port: ssh
# proto: tcp
# notify: Restart ufw
# - name: Enable ufw
# become: true
# community.general.ufw:
# state: enabled

View file

@ -0,0 +1,16 @@
---
- name: Install basic packages
become: true
ansible.builtin.apt:
pkg:
- git
- vim
- dnsutils
- rsyslog
- snapd
state: present
- name: Install Snap Core
become: true
community.general.snap:
name: core
state: present