ansible/roles/pf/templates/pf.conf.j2

24 lines
529 B
Django/Jinja

set block-policy return
set skip on lo0
block in
pass out
pass in quick proto icmp
pass in quick proto icmp6
{% if firewall_raw is defined %}
{% for rule in firewall_raw %}
{{ rule }}
{% endfor %}
{% endif %}
{% for rule in firewall_in %}
{% if rule.from is defined %}
{% for from in rule.from | ansible.utils.ipaddr %}
pass in quick proto {{ rule.proto }} from {{ from }} to port {{ rule.port }}
{% endfor %}
{% else %}
pass in quick proto {{ rule.proto }} to port {{ rule.port }}
{% endif %}
{% endfor %}