mirror of
https://github.com/ansible-lockdown/RHEL9-CIS.git
synced 2025-12-24 14:23:05 +00:00
firewall pkgs to masked as default
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
This commit is contained in:
parent
bb7869adad
commit
e9d212437a
1 changed files with 2 additions and 2 deletions
|
|
@ -485,13 +485,13 @@ rhel9cis_default_zone: public
|
|||
rhel9cis_firewalld_nftables_state: masked # Note if absent removes the firewalld pkg dependancy
|
||||
|
||||
#### nftables
|
||||
rhel9cis_nftables_firewalld_state: absent
|
||||
rhel9cis_nftables_firewalld_state: masked
|
||||
rhel9cis_nft_tables_autonewtable: true
|
||||
rhel9cis_nft_tables_tablename: filter
|
||||
rhel9cis_nft_tables_autochaincreate: true
|
||||
|
||||
#### iptables
|
||||
rhel9cis_iptables_firewalld_state: absent
|
||||
rhel9cis_iptables_firewalld_state: masked
|
||||
|
||||
# Warning Banner Content (issue, issue.net, motd)
|
||||
rhel9cis_warning_banner: |
|
||||
|
|
|
|||
Loading…
Add table
Add a link
Reference in a new issue