roles/common: Don't overwrite spamhaus nft sets

The ones in this repo are only placeholders that get updated by the
update-spamhaus-nftables service, so we shouldn't overwrite them if
they exist.
This commit is contained in:
Alan Orth 2021-07-27 22:01:57 +03:00
parent d3922e7878
commit a74d6dfc08
Signed by: alanorth
GPG Key ID: 0FB860CC9C45B1B9

View File

@ -39,7 +39,7 @@
- name: Copy extra nftables configuration files
when: ansible_distribution_major_version is version('11', '>=')
copy: src={{ item }} dest=/etc/nftables/{{ item }} owner=root group=root mode=0644
copy: src={{ item }} dest=/etc/nftables/{{ item }} owner=root group=root mode=0644 force=no
loop:
- spamhaus-ipv4.nft
- spamhaus-ipv6.nft