Playbook #2

/home/zuul/src/opendev.org/opendev/system-config/playbooks/base.yaml

Report Status CLI Date Duration Controller User Versions Hosts Plays Tasks Results Files Records
18 Jul 2025 20:43:54 +0000 00:01:43.18 bridge99.opendev.org root Ansible 2.15.13 ara 1.7.2 (client), 1.7.2 (server) Python 3.10.12 3 1 85 251 27 0

File: /home/zuul/src/opendev.org/opendev/system-config/playbooks/roles/iptables/tasks/main.yaml

- name: Include OS-specific variables
  include_vars: "{{ lookup('first_found', params) }}"
  vars:
    params:
      files: "{{ distro_lookup_path }}"
      paths:
        - 'vars'

- name: Install iptables
  package:
    name: '{{ package_name }}'
    state: present

- name: Ensure iptables rules directory
  file:
    state: directory
    path: '{{ rules_dir }}'

- name: Install IPv4 rules files
  template:
    src: rules.v4.j2
    dest: '{{ ipv4_rules }}'
    owner: root
    group: root
    mode: 0640
    setype: '{{ setype | default(omit) }}'
  notify:
    - Reload iptables

- name: Install IPv6 rules files
  template:
    src: rules.v6.j2
    dest: '{{ ipv6_rules }}'
    owner: root
    group: root
    mode: 0640
    setype: '{{ setype | default(omit) }}'
  notify:
    - Reload iptables

- name: Include OS specific tasks
  include_tasks: "{{ item }}"
  vars:
    params:
      files: "{{ distro_lookup_path }}"
  loop: "{{ query('first_found', params, errors='ignore') }}"

- name: Enable iptables service
  service:
    name: '{{ service_name }}'
    enabled: true