Use nftables for firewall on ingress
See ya never, iptables!
This commit is contained in:
@ -53,14 +53,3 @@
|
||||
name: nebula
|
||||
enabled: true
|
||||
become: true
|
||||
|
||||
- name: Enable unsafe routing
|
||||
iptables:
|
||||
table: nat
|
||||
chain: POSTROUTING
|
||||
out_interface: ens18
|
||||
source: "{{ nebula.cidr }}"
|
||||
jump: MASQUERADE
|
||||
notify: persist iptables
|
||||
become: true
|
||||
when: ansible_hostname == "ingress"
|
||||
|
Reference in New Issue
Block a user