From 42729efb171e1708acc605f0ecc1151575de32be Mon Sep 17 00:00:00 2001 From: LinuxSquare Date: Sat, 24 Aug 2024 17:51:59 +0200 Subject: [PATCH] Fix nftables config, Remove ansible log dir task --- network/files/firewall_rules.nft.j2 | 4 ++-- system/ansible.ansible.yml | 9 +-------- 2 files changed, 3 insertions(+), 10 deletions(-) diff --git a/network/files/firewall_rules.nft.j2 b/network/files/firewall_rules.nft.j2 index 1585d17..c957ce9 100644 --- a/network/files/firewall_rules.nft.j2 +++ b/network/files/firewall_rules.nft.j2 @@ -4,8 +4,8 @@ table inet filter { chain input { tcp dport 22 accept - {%- for port in ALLOWED_PORTS %} + {% for port in ALLOWED_PORTS %} tcp dport {{ port }} accept - {%- endfor %} + {% endfor %} } } diff --git a/system/ansible.ansible.yml b/system/ansible.ansible.yml index a8a1cc6..e954a4f 100644 --- a/system/ansible.ansible.yml +++ b/system/ansible.ansible.yml @@ -13,11 +13,4 @@ dest: /etc/ansible/ansible.cfg owner: root group: root - mode: '0644' - - name: Ansible log directory - file: - state: directory - path: /var/log/ansible - owner: root - group: root - mode: '0700' + mode: "0644"