Compare commits

..

13 Commits

6 changed files with 26 additions and 30 deletions

View File

@ -12,9 +12,9 @@
- base - base
- goss - goss
- snmp-agent - snmp-agent
- vpn-stg-r - firewall-vpn-r
# - x509-r # - vpn-stg-r
# - firewall-vpn-r - x509-r
- ssh-cli - ssh-cli
- syslog-cli - syslog-cli
- post - post

View File

@ -15,9 +15,9 @@
- dns-agence - dns-agence
- ssh-root-access - ssh-root-access
- snmp-agent - snmp-agent
- vpn-stg-l - firewall-vpn-l
# - x509-l # - vpn-stg-l
# - firewall-vpn-l - x509-l
- ssh-cli - ssh-cli
- syslog-cli - syslog-cli
- post - post

View File

@ -7,9 +7,9 @@
@def $DEV_VPN = enp0s8; @def $DEV_VPN = enp0s8;
@def $DEV_EXT = enp0s9; @def $DEV_EXT = enp0s9;
@def $NET_ADM=192.168.99.0/24; @def $NET_ADM=192.168.99.102/24;
@def $NET_VPN=192.168.0.0/24; @def $NET_VPN=172.16.128.254/24;
@def $NET_EXT=192.168.1.0/30; @def $NET_EXT=192.168.0.52/30;
table filter { table filter {
chain INPUT { chain INPUT {

View File

@ -7,9 +7,9 @@
@def $DEV_VPN = enp0s8; @def $DEV_VPN = enp0s8;
@def $DEV_EXT = enp0s9; @def $DEV_EXT = enp0s9;
@def $NET_ADM=192.168.99.0/24; @def $NET_ADM=192.168.99.112/24;
@def $NET_VPN=192.168.0.0/24; @def $NET_VPN=192.168.0.51/24;
@def $NET_EXT=192.168.1.0/30; @def $NET_EXT=192.168.1.2/30;
table filter { table filter {
chain INPUT { chain INPUT {

View File

@ -1,15 +1,10 @@
--- ---
- name: redemarrer interfaces - name : installer ferm
command: ifdown enp0s8
- name: redemarrer interfaces
command: ifup enp0s8
- name: redemarrer interfaces
command: ifdown enp0s9
- name: redemarrer interfaces
command: ifup enp0s9
- name: redemarrer interfaces
apt: name=ferm state=present apt: name=ferm state=present
- name: fichier parefeu pour VPN - name: fichier parefeu pour VPN
copy: src=ferm.conf dest=/etc/ferm/ferm.conf copy: src=ferm.conf dest=/etc/ferm/ferm.conf
notify:
- Restart ferm - name: Restart ferm
name: ferm
state: restarted

View File

@ -11,13 +11,14 @@
roles: roles:
- base - base
- goss - goss
- post
#- s-lb-bd-ab #- s-lb-bd-ab
- mariadb-ab - mariadb-ab
- role: db-user # - role: db-user
cli_ip: "192.168.102.1" # cli_ip: "192.168.102.1"
- role: db-user # - role: db-user
cli_ip: "192.168.102.2" # cli_ip: "192.168.102.2"
- role: db-user # - role: db-user
cli_ip: "192.168.102.3" # cli_ip: "192.168.102.3"
- snmp-agent - snmp-agent
- post # - post