123456789101112131415161718192021222324252627282930313233343536373839404142434445 |
- ---
- - name: Configure firewalld on master nodes
- firewalld:
- port: "{{ item }}"
- permanent: yes
- state: enabled
- with_items: '{{ k8s_master_ports }}'
- - name: Open calico UDP ports on the firewall
- firewalld:
- port: "{{ item }}/udp"
- permanent: yes
- state: enabled
- with_items: "{{ calico_udp_ports }}"
- - name: Open calico TCP ports on the firewall
- firewalld:
- port: "{{ item }}/tcp"
- permanent: yes
- state: enabled
- with_items: "{{ calico_tcp_ports }}"
- - name: Masquerade the firewall
- command: firewall-cmd --add-masquerade --permanent
- changed_when: true
- tags: firewalld
- - name: Reload firewalld
- command: firewall-cmd --reload
- changed_when: true
|