forked from ComplianceAsCode/content
-
Notifications
You must be signed in to change notification settings - Fork 0
Commit
This commit does not belong to any branch on this repository, and may belong to a fork outside of the repository.
Use new template for firewall package/service rules on Ubuntu 24.04
This change modifies the firewall package/service rules to use the templates `..._guard_var` introduced in ComplianceAsCode#11818 to selectively install the firewall that is chosen by the var_network_filtering_service It also fixes the platform applicability on Ubuntu 24.04 since it both required firewalld and required that conflicting services be disabled when installing packages. This interfered with the logic introduced in the new templates and could result in a package/service not be installed/enabled. For example, if the user selected 'nftables' as their firewall using the new template and variable, the rule package_nftables_installed would still be marked as not applicable because the ufw service is enabled by default on some installations. The proposed solution removes the applicability check and installs the package depending only on the choice of var_network_filtering_service, irrespective of the status of the ufw service.
- Loading branch information
Showing
7 changed files
with
45 additions
and
12 deletions.
There are no files selected for viewing
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters