add install for iptables-persistent, changed iptables loader

This commit is contained in:
Alexander Böhm 2020-11-07 22:39:22 +01:00
parent e8084b5848
commit 944bda2d1c
1 changed files with 5 additions and 8 deletions

View File

@ -1,6 +1,6 @@
- name: install packages
apt:
name: ['iptables', 'ifupdown']
name: ['iptables', 'iptables-persistent', 'ifupdown']
state: present
- name: ensure resolved is stopped and disabled
@ -29,7 +29,7 @@
ifup {{ dhcp_interface }}
when: lan_iface_cfg.changed
- name: enable permantent masquerading
- name: enable permantent masquerading for ipv4
copy:
content: |
*nat
@ -39,15 +39,12 @@
:OUTPUT ACCEPT [0:0]
-A POSTROUTING -o {{wan_interface}} -j MASQUERADE
COMMIT
dest: /etc/network/iptables.up.rules
dest: /etc/iptables/rules.v4
register: iptables_up_rules
- name: apply iptables rules
iptables:
table: nat
chain: POSTROUTING
out_interface: "{{ wan_interface }}"
jump: MASQUERADE
shell: iptables-restore /etc/iptables/rules.v4
when: iptables_up_rules.changed
- name: enable ip forwarding
sysctl: