From 664fa68b17d2890d79378d47fc6f72fbb3de3018 Mon Sep 17 00:00:00 2001 From: Sangelo Date: Wed, 16 Oct 2024 21:53:09 +0200 Subject: [PATCH] [c] bugfixes --- roles/secure/tasks/main.yml | 10 ++++++---- 1 file changed, 6 insertions(+), 4 deletions(-) diff --git a/roles/secure/tasks/main.yml b/roles/secure/tasks/main.yml index ba0e9ed..580f1fd 100644 --- a/roles/secure/tasks/main.yml +++ b/roles/secure/tasks/main.yml @@ -40,15 +40,17 @@ community.general.ufw: port: "{{ rule.port }}" rule: "{{ rule.rule | default('allow') }}" - delete: "{{ true if rule.state == 'absent' else false | default(false) }}" - direction: "{{ rule.direction | default('in') }}" + delete: "{{ true if rule.state == 'absent' else omit | default(omit) }}" + direction: "{{ rule.direction | default(omit) }}" proto: "{{ rule.protocol | default('tcp') }}" - interface: "{{ rule.interface if rule.interface != 'all' else omit }}" + interface: "{{ rule.interface if rule.interface != 'all' else omit | default(omit) }}" comment: "{{ rule.comment | default('Custom rule for port {{ rule.port }} on {{ rule.interface }}') }}" loop: "{{ common_firewall | default([]) }}" loop_control: loop_var: rule - when: common_firewall_enable + when: + - common_firewall_enabled + - common_firewall - name: Install sudo ansible.builtin.apt: