From 4c23562144e59da95e0ac8febf172070551f0b5b Mon Sep 17 00:00:00 2001 From: staticsafe Date: Sun, 25 Aug 2019 21:08:25 -0400 Subject: [PATCH] add handlers to firewall-ruleset-deploy --- .../roles/firewall-ruleset-deploy/handlers/main.yml | 13 +++++++++++++ ubuntu/roles/firewall-ruleset-deploy/tasks/main.yml | 10 ++++------ 2 files changed, 17 insertions(+), 6 deletions(-) create mode 100644 ubuntu/roles/firewall-ruleset-deploy/handlers/main.yml diff --git a/ubuntu/roles/firewall-ruleset-deploy/handlers/main.yml b/ubuntu/roles/firewall-ruleset-deploy/handlers/main.yml new file mode 100644 index 0000000..34ab5ba --- /dev/null +++ b/ubuntu/roles/firewall-ruleset-deploy/handlers/main.yml @@ -0,0 +1,13 @@ +--- + +- name: restart netfilter-persistent-v4 + service: + name: netfilter-persistent + state: restarted + enabled: yes + +- name: restart netfilter-persistent-v6 + service: + name: netfilter-persistent + state: restarted + enabled: yes diff --git a/ubuntu/roles/firewall-ruleset-deploy/tasks/main.yml b/ubuntu/roles/firewall-ruleset-deploy/tasks/main.yml index 757f0f7..169233d 100644 --- a/ubuntu/roles/firewall-ruleset-deploy/tasks/main.yml +++ b/ubuntu/roles/firewall-ruleset-deploy/tasks/main.yml @@ -14,14 +14,12 @@ copy: src: "{{ ansible_fqdn }}.rules.v4" dest: /etc/iptables/rules.v4 + notify: + - restart netfilter-persistent-v4 - name: Copy IPv6 ruleset copy: src: "{{ ansible_fqdn }}.rules.v6" dest: /etc/iptables/rules.v6 - -- name: Restart netfilter-persistent service to load rulesets - service: - name: netfilter-persistent - state: restarted - enabled: yes + notify: + - restart netfilter-persistent-v6