21 lines
434 B
YAML

- name: Generate Podman Compose file for Wireguard and Nginx
template:
src: podman-compose.j2
dest: /opt/network/podman-compose.yml
owner: root
group: root
mode: '0644'
become: true
- name: Open firewall ports for web traffic
ansible.posix.firewalld:
port: "{{ item }}"
permanent: true
state: enabled
zone: public
loop:
- 80/tcp
- 443/tcp
notify: Reload firewalld
become: true