Alan Orth
9bba0d96bb
I will try using nftables directly instead of via firewalld as of Debian 11 as it is the replacement for the iptables/ipset stack in recent years and is easier to work with. This also includes a systemd service, timer, and script to update the spamhaus DROP lists as nftables sets. Still need to add fail2ban support. |
||
---|---|---|
.. | ||
cron-apt.yml | ||
fail2ban.yml | ||
firewall_Debian.yml | ||
firewall_Ubuntu.yml | ||
main.yml | ||
ntp.yml | ||
packages_Debian.yml | ||
packages_Ubuntu.yml | ||
ssh-keys.yml | ||
sshd.yml | ||
tarsnap.yml |