Closed gfediere closed 6 years ago
This looks like a serious improvement to how we were handling rules previously. Just move that config file logic into a variable and out of the attribute and we'll get this shipped. Thanks
@tas50 just pushed changes tell me if you are ok with it.
Description
Use package iptables-persistent (https://packages.debian.org/fr/jessie/iptables-persistent) on Ubuntu/Debian for loading rules instead of post network script
Do not use temporary file:
/etc/iptables/general
for Debian/Ubuntu and only have one file for persisted ruleAlso fix resources/templates accordingly
Issues Resolved
None but i will solve issue #58 in the next commit by checking consistency of
/etc/sysconfig/iptables
or/etc/iptables/rules.v4
depending of the systemCheck List