Deploy a Firewall in Ansible

48 views
Skip to first unread message

Liliana Achig

unread,
Dec 19, 2021, 4:43:16 PM12/19/21
to Ansible Project
Please have a playbook template to deploy a Firewall in Ansible, there are not many on the internet, I have tried with them but they don't work for me, not Ansible firewallD, I was trying with UFW but I have not had any results either. Please someone who can help me with this issue, I thank in advance whoever does it for help.

Dick Visser

unread,
Dec 21, 2021, 5:39:34 AM12/21/21
to ansible...@googlegroups.com
Sounds like ansible is totally irrelevant to you. 

First pick a firewall that suits your requirements and only then look how to automate it. 


On Sun, 19 Dec 2021 at 22:43, Liliana Achig <lilia...@gmail.com> wrote:
Please have a playbook template to deploy a Firewall in Ansible, there are not many on the internet, I have tried with them but they don't work for me, not Ansible firewallD, I was trying with UFW but I have not had any results either. Please someone who can help me with this issue, I thank in advance whoever does it for help.

--
You received this message because you are subscribed to the Google Groups "Ansible Project" group.
To unsubscribe from this group and stop receiving emails from it, send an email to ansible-proje...@googlegroups.com.
To view this discussion on the web visit https://groups.google.com/d/msgid/ansible-project/2451813b-40a8-495a-805d-d6e7efbbe9dcn%40googlegroups.com.
--
Sent from a mobile device - please excuse the brevity, spelling and punctuation.

Liliana Achig

unread,
Dec 21, 2021, 4:21:02 PM12/21/21
to Ansible Project
Excuse me, I'm new to ansible. I don't know if you can help me, how can I check that the port of the firewall that I implemented was blocked or the change was made in the host node, the playbook has already run but I need to know how to do the rest

Stefan Hornburg (Racke)

unread,
Dec 22, 2021, 4:44:16 AM12/22/21
to ansible...@googlegroups.com
On 21/12/2021 22:21, Liliana Achig wrote:
> Excuse me, I'm new to ansible. I don't know if you can help me, how can I check that the port of the firewall that I implemented was blocked or the change was made in the host node, the playbook has already run but I need to know how to do the rest

It would be helpful to reveal your playbook.

Try nmap to check whether ports are open or not.

Regards
Racke

>
> El martes, 21 de diciembre de 2021 a las 5:39:34 UTC-5, dick....@geant.org escribió:
>
> Sounds like ansible is totally irrelevant to you.
>
> First pick a firewall that suits your requirements and only then look how to automate it.
>
>
> On Sun, 19 Dec 2021 at 22:43, Liliana Achig <lilia...@gmail.com> wrote:
>
> Please have a playbook template to deploy a Firewall in Ansible, there are not many on the internet, I have tried with them but they don't work for me, not Ansible firewallD, I was trying with UFW but I have not had any results either. Please someone who can help me with this issue, I thank in advance whoever does it for help.
>
> --
> You received this message because you are subscribed to the Google Groups "Ansible Project" group.
> To unsubscribe from this group and stop receiving emails from it, send an email to ansible-proje...@googlegroups.com.
> To view this discussion on the web visit https://groups.google.com/d/msgid/ansible-project/2451813b-40a8-495a-805d-d6e7efbbe9dcn%40googlegroups.com <https://groups.google.com/d/msgid/ansible-project/2451813b-40a8-495a-805d-d6e7efbbe9dcn%40googlegroups.com?utm_medium=email&utm_source=footer>.
>
> --
> Sent from a mobile device - please excuse the brevity, spelling and punctuation.
>
> --
> You received this message because you are subscribed to the Google Groups "Ansible Project" group.
> To unsubscribe from this group and stop receiving emails from it, send an email to ansible-proje...@googlegroups.com <mailto:ansible-proje...@googlegroups.com>.
> To view this discussion on the web visit https://groups.google.com/d/msgid/ansible-project/f1d08586-4e14-47cb-9a90-d7a3850ce77en%40googlegroups.com <https://groups.google.com/d/msgid/ansible-project/f1d08586-4e14-47cb-9a90-d7a3850ce77en%40googlegroups.com?utm_medium=email&utm_source=footer>.


--
Ecommerce and Linux consulting + Perl and web application programming.
Debian and Sympa administration.


OpenPGP_signature

Nico Kadel-Garcia

unread,
Dec 22, 2021, 7:56:50 AM12/22/21
to ansible...@googlegroups.com
On Wed, Dec 22, 2021 at 4:44 AM Stefan Hornburg (Racke)
<ra...@linuxia.de> wrote:
>
> On 21/12/2021 22:21, Liliana Achig wrote:
> > Excuse me, I'm new to ansible. I don't know if you can help me, how can I check that the port of the firewall that I implemented was blocked or the change was made in the host node, the playbook has already run but I need to know how to do the rest
>
> It would be helpful to reveal your playbook.
>
> Try nmap to check whether ports are open or not.
>
> Regards
> Racke

Or netcat, which is lighterweight and tends to upset security people less.

Mauricio Tavares

unread,
Dec 22, 2021, 8:12:23 AM12/22/21
to ansible...@googlegroups.com
Another alternative is to use ansible to retrieve a list of the
current firewall settings


> --
> You received this message because you are subscribed to the Google Groups "Ansible Project" group.
> To unsubscribe from this group and stop receiving emails from it, send an email to ansible-proje...@googlegroups.com.
> To view this discussion on the web visit https://groups.google.com/d/msgid/ansible-project/CAOCN9rx9%3DSirTbw_TrdJmWOHqzN81nS%3DG-c4_Rim5esbCpWY7Q%40mail.gmail.com.
Reply all
Reply to author
Forward
0 new messages