aboutsummaryrefslogtreecommitdiffstats
path: root/roles/nginx-ufw
diff options
context:
space:
mode:
Diffstat (limited to 'roles/nginx-ufw')
-rw-r--r--roles/nginx-ufw/README.md6
-rw-r--r--roles/nginx-ufw/meta/main.yml4
-rw-r--r--roles/nginx-ufw/tasks/main.yml8
3 files changed, 18 insertions, 0 deletions
diff --git a/roles/nginx-ufw/README.md b/roles/nginx-ufw/README.md
new file mode 100644
index 0000000..042fda8
--- /dev/null
+++ b/roles/nginx-ufw/README.md
@@ -0,0 +1,6 @@
+# Role "nginx-ufw"
+
+Allows NGINX HTTP and HTTPS traffic through the UFW firewall.
+
+
+<!-- vim: set textwidth=80 sw=2 ts=2: -->
diff --git a/roles/nginx-ufw/meta/main.yml b/roles/nginx-ufw/meta/main.yml
new file mode 100644
index 0000000..dac7049
--- /dev/null
+++ b/roles/nginx-ufw/meta/main.yml
@@ -0,0 +1,4 @@
+---
+dependencies:
+ - nginx
+ - ufw
diff --git a/roles/nginx-ufw/tasks/main.yml b/roles/nginx-ufw/tasks/main.yml
new file mode 100644
index 0000000..bea22aa
--- /dev/null
+++ b/roles/nginx-ufw/tasks/main.yml
@@ -0,0 +1,8 @@
+---
+- name: allow https traffic through the firewall
+ ufw:
+ app: WWW Secure
+ rule: allow
+ comment: nginx web server
+ tags:
+ - role::nginx-ufw