Closed bastelfreak closed 1 year ago
That's using the simp helpers so not a trivial conversion. Also not sure if firewalld actually works in containers.
I disabled acceptance tests for now. this allows us to merge the PR and at least enable unit testing
@ekohl firewalld
has the ability to run in containers but the containers have to be started privileged with CAP_NET_ADMIN
so that the underlying tools can access the napespaced firewall. It's completely hit and miss.
iptables
had the ability to work this way but I haven't checked nftables
yet. Would recommend keeping the acceptance tests targeting VMs until it can all be confirmed.
There's been enough drift that it might be worth redoing this PR?
as stated on the mailinglist: I got the impression that the module is abandoned and I've no plans to work further on it. If someone want's to keep using it I suggest someone tries a new modulesync.
Somehow my subscription to that list got suspended...
Trying in https://github.com/voxpupuli/puppet-firewalld/pull/347
modulesync 4.0.0