Update the firewall cookbook to the latest version

This gives us comments from the named resources
This commit is contained in:
Greg Karékinian
2023-06-29 15:08:44 +02:00
parent 916ae8094c
commit 68ce3c4834
72 changed files with 4774 additions and 448 deletions

View File

@@ -17,28 +17,28 @@ unless node.chef_environment == "development"
include_recipe "kosmos-ipfs::firewall_swarm"
end
firewall_rule 'ipfs_api' do
firewall_rule 'ipfs api' do
port node['kosmos-ipfs']['api_port']
source "10.1.1.0/24"
protocol :tcp
command :allow
end
firewall_rule 'ipfs_gateway' do
firewall_rule 'ipfs gateway' do
port node['kosmos-ipfs']['gateway_port']
source "10.1.1.0/24"
protocol :tcp
command :allow
end
firewall_rule 'ipfs_local_p2p_allow_out' do
firewall_rule 'ipfs local p2p' do
destination "10.1.1.0/24"
direction :out
protocol :none
command :allow
end
firewall_rule 'ipfs_local_p2p_deny_out' do
firewall_rule 'ipfs local p2p' do
destination "10.0.0.0/8"
direction :out
protocol :none

View File

@@ -4,7 +4,7 @@
#
include_recipe 'firewall'
firewall_rule 'ipfs_swarm_p2p' do
firewall_rule 'ipfs swarm p2p' do
port node['kosmos-ipfs']['swarm_p2p_port']
protocol :tcp
command :allow