ansible/group_vars/proxy.yml
Timo Makinen 6cba945cb8 Move to static DNS servers and use DoT
This now affects only Fedora and OpenBSD hosts
2025-02-20 21:52:58 +00:00

45 lines
1.1 KiB
YAML

---
# increase memory size
mem_size: 1024
# use bigger disk for os as we have web site data there
dsk_size: 30
network_default_gateway: 37.16.96.145
network_vip_interfaces:
- device: vio0
vhid: 8
ipaddr: 172.20.20.8
netmask: 255.255.252.0
pass: "{{ vip8_pass }}"
priority: "{{ vip8_priority }}"
- device: vio0
vhid: 9
ipaddr: 172.20.20.9
netmask: 255.255.252.0
pass: "{{ vip9_pass }}"
priority: "{{ vip9_priority }}"
- device: vio1
vhid: 153
ipaddr: 37.16.96.153
netmask: 255.255.255.240
ip6addr: 2a00:4cc1:6:1006:feed:dead:beef:153
ip6netmask: 64
pass: "{{ vip153_pass }}"
priority: "{{ vip153_priority }}"
- device: vio1
vhid: 154
ipaddr: 37.16.96.154
netmask: 255.255.255.240
ip6addr: 2a00:4cc1:6:1006:feed:dead:beef:154
ip6netmask: 64
pass: "{{ vip154_pass }}"
priority: "{{ vip154_priority }}"
firewall_raw:
- pass quick proto carp
firewall_in:
- {proto: tcp, port: 22, from: [172.20.20.0/22]}
- {proto: tcp, port: 80}
- {proto: tcp, port: 443}
- {proto: tcp, port: 9100, from: [172.20.20.0/22]}