ansible/group_vars/relay.yml
Timo Makinen 6cba945cb8 Move to static DNS servers and use DoT
This now affects only Fedora and OpenBSD hosts
2025-02-20 21:52:58 +00:00

38 lines
918 B
YAML

---
network_default_gateway: 37.16.96.145
network_vip_interfaces:
- device: vio1
vhid: 150
ipaddr: 37.16.96.150
netmask: 255.255.255.240
pass: "{{ vip150_pass }}"
priority: "{{ vip150_priority }}"
- device: vio0
vhid: 6
ipaddr: 172.20.20.6
netmask: 255.255.252.0
pass: "{{ vip6_pass }}"
priority: "{{ vip151_priority }}"
- device: vio1
vhid: 151
ipaddr: 37.16.96.151
netmask: 255.255.255.240
pass: "{{ vip151_pass }}"
priority: "{{ vip151_priority }}"
- device: vio1
vhid: 152
ipaddr: 37.16.96.152
netmask: 255.255.255.240
pass: "{{ vip152_pass }}"
priority: "{{ vip152_priority }}"
firewall_raw:
- pass quick proto carp
firewall_in:
- {proto: tcp, port: 22, from: [172.20.20.0/22]}
- {proto: tcp, port: 80}
- {proto: tcp, port: 443}
- {proto: tcp, port: 636}
- {proto: tcp, port: 6514}
- {proto: tcp, port: 9100}