update firewalld examples to be FQCN

Signed-off-by: Adam Miller <admiller@redhat.com>
This commit is contained in:
Adam Miller 2020-07-15 16:23:09 -05:00
parent 6f822d08d4
commit 8c9bb90629

View file

@ -101,68 +101,70 @@ author:
''' '''
EXAMPLES = r''' EXAMPLES = r'''
- firewalld: - name: permit traffic in default zone for https service
ansible.posix.firewalld:
service: https service: https
permanent: yes permanent: yes
state: enabled state: enabled
- firewalld: - name: do not permit traffic in default zone on port 8081/tcp
ansible.posix.firewalld:
port: 8081/tcp port: 8081/tcp
permanent: yes permanent: yes
state: disabled state: disabled
- firewalld: - ansible.posix.firewalld:
port: 161-162/udp port: 161-162/udp
permanent: yes permanent: yes
state: enabled state: enabled
- firewalld: - ansible.posix.firewalld:
zone: dmz zone: dmz
service: http service: http
permanent: yes permanent: yes
state: enabled state: enabled
- firewalld: - ansible.posix.firewalld:
rich_rule: rule service name="ftp" audit limit value="1/m" accept rich_rule: rule service name="ftp" audit limit value="1/m" accept
permanent: yes permanent: yes
state: enabled state: enabled
- firewalld: - ansible.posix.firewalld:
source: 192.0.2.0/24 source: 192.0.2.0/24
zone: internal zone: internal
state: enabled state: enabled
- firewalld: - ansible.posix.firewalld:
zone: trusted zone: trusted
interface: eth2 interface: eth2
permanent: yes permanent: yes
state: enabled state: enabled
- firewalld: - ansible.posix.firewalld:
masquerade: yes masquerade: yes
state: enabled state: enabled
permanent: yes permanent: yes
zone: dmz zone: dmz
- firewalld: - ansible.posix.firewalld:
zone: custom zone: custom
state: present state: present
permanent: yes permanent: yes
- firewalld: - ansible.posix.firewalld:
zone: drop zone: drop
state: enabled state: enabled
permanent: yes permanent: yes
icmp_block_inversion: yes icmp_block_inversion: yes
- firewalld: - ansible.posix.firewalld:
zone: drop zone: drop
state: enabled state: enabled
permanent: yes permanent: yes
icmp_block: echo-request icmp_block: echo-request
- name: Redirect port 443 to 8443 with Rich Rule - name: Redirect port 443 to 8443 with Rich Rule
firewalld: ansible.posix.firewalld:
rich_rule: rule family=ipv4 forward-port port=443 protocol=tcp to-port=8443 rich_rule: rule family=ipv4 forward-port port=443 protocol=tcp to-port=8443
zone: public zone: public
permanent: yes permanent: yes