ansible-infra/collections/ansible_collections/nullified/infrastructure/roles/security/defaults/main.yml
2023-12-12 00:00:00 +00:00

33 lines
620 B
YAML

---
security:
apt:
force_https: true
https_ignore_list: []
clamav:
version: 1.2.1
firewall:
enable: true
nat:
policy:
prerouting: accept
input: accept
postrouting: accept
output: accept
additional_rules: ""
mangle:
drop_privatenets: true
policy:
prerouting: accept
postrouting: accept
output: accept
forward: drop
additional_rules: ""
filter:
policy:
input: drop
output: drop
forward: drop
additional_rules: ""
custom_security: {}
recursive_combine: true