Skip to content
Extraits de code Groupes Projets
Valider 882ef51c rédigé par Fanch's avatar Fanch
Parcourir les fichiers

enable idempotence test

parent 8aa38391
Aucune branche associée trouvée
Aucune étiquette associée trouvée
Aucune requête de fusion associée trouvée
...@@ -5,5 +5,3 @@ ...@@ -5,5 +5,3 @@
- name: "Include iptables" - name: "Include iptables"
include_role: include_role:
name: "iptables" name: "iptables"
tags:
- molecule-idempotence-notest
...@@ -6,3 +6,5 @@ ...@@ -6,3 +6,5 @@
flush: yes flush: yes
ip_version: "{{ ip_version }}" ip_version: "{{ ip_version }}"
loop: "{{ iptables_tables_to_clean }}" loop: "{{ iptables_tables_to_clean }}"
tags:
- molecule-idempotence-notest # as if we flush again, future rules will be re-applied
...@@ -32,8 +32,6 @@ ...@@ -32,8 +32,6 @@
- name: Save Rule - name: Save Rule
include_tasks: save.yml include_tasks: save.yml
loop: "{{ iptables_ip_versions }}" loop: "{{ iptables_ip_versions }}"
loop_control:
loop_var: ip_version
when: iptables_do_save when: iptables_do_save
- name: Enable Service - name: Enable Service
......
--- ---
- name: Save The Current State - name: Save The Current ipv4 State
community.general.iptables_state: community.general.iptables_state:
ip_version: "{{ ip_version }}" ip_version: "ipv4"
state: saved state: saved
path: "/etc/iptables/{{ item }}.rules" path: "/etc/iptables/iptables.rules"
loop: "{{ iptables_services }}" # warning should sheck if name contain .service or not when:
- '"ipv4" in iptables_ip_versions'
- '"iptables" in iptables_services'
notify: Restart Service
- name: Save The Current ipv6 State
community.general.iptables_state:
ip_version: "ipv6"
state: saved
path: "/etc/iptables/ip6tables.rules"
when:
- '"ipv6" in iptables_ip_versions'
- '"ip6tables" in iptables_services'
notify: Restart Service notify: Restart Service
0% Chargement en cours ou .
You are about to add 0 people to the discussion. Proceed with caution.
Terminez d'abord l'édition de ce message.
Veuillez vous inscrire ou vous pour commenter