mirror of https://github.com/Aidaho12/haproxy-wi
parent
666fc39e1d
commit
534916b1c8
|
@ -796,7 +796,7 @@ def upload_ssh_key():
|
||||||
passphrase = json_loads['passphrase']
|
passphrase = json_loads['passphrase']
|
||||||
token = request.headers.get('token')
|
token = request.headers.get('token')
|
||||||
login, group_id, role_id = user_sql.get_username_group_id_from_api_token(token)
|
login, group_id, role_id = user_sql.get_username_group_id_from_api_token(token)
|
||||||
groups = sql.select_groups(id=group_id)
|
groups = group_sql.select_groups(id=group_id)
|
||||||
for group in groups:
|
for group in groups:
|
||||||
user_group = group.name
|
user_group = group.name
|
||||||
try:
|
try:
|
||||||
|
|
|
@ -27,7 +27,6 @@ def alerts_history(service, user_group, **kwargs):
|
||||||
except Exception as e:
|
except Exception as e:
|
||||||
out_error(e)
|
out_error(e)
|
||||||
else:
|
else:
|
||||||
conn.close()
|
|
||||||
return cursor.fetchall()
|
return cursor.fetchall()
|
||||||
|
|
||||||
|
|
||||||
|
|
|
@ -87,7 +87,6 @@
|
||||||
- sestatus.stdout is defined
|
- sestatus.stdout is defined
|
||||||
- '"Enforcing" in sestatus.stdout'
|
- '"Enforcing" in sestatus.stdout'
|
||||||
|
|
||||||
|
|
||||||
- name: Enable and start service keepalived
|
- name: Enable and start service keepalived
|
||||||
service:
|
service:
|
||||||
name: keepalived
|
name: keepalived
|
||||||
|
@ -96,7 +95,6 @@
|
||||||
enabled: yes
|
enabled: yes
|
||||||
ignore_errors: yes
|
ignore_errors: yes
|
||||||
|
|
||||||
|
|
||||||
- name: Enable net.ipv4.ip_forward
|
- name: Enable net.ipv4.ip_forward
|
||||||
sysctl:
|
sysctl:
|
||||||
name: net.ipv4.ip_forward
|
name: net.ipv4.ip_forward
|
||||||
|
@ -105,6 +103,32 @@
|
||||||
state: present
|
state: present
|
||||||
reload: yes
|
reload: yes
|
||||||
|
|
||||||
|
- name: permit vrrp traffic
|
||||||
|
ansible.posix.firewalld:
|
||||||
|
protocol: vrrp
|
||||||
|
permanent: true
|
||||||
|
state: enabled
|
||||||
|
ignore_errors: yes
|
||||||
|
no_log: True
|
||||||
|
debugger: never
|
||||||
|
when:
|
||||||
|
- '"firewalld" in ansible_facts.packages'
|
||||||
|
- ansible_facts['os_family'] == "RedHat" or ansible_facts['os_family'] == 'CentOS'
|
||||||
|
- ansible_facts.services["firewalld.service"]['state'] == "running"
|
||||||
|
|
||||||
|
- name: Open input vrrp port for iptables
|
||||||
|
iptables:
|
||||||
|
chain: INPUT
|
||||||
|
jump: ACCEPT
|
||||||
|
protocol: vrrp
|
||||||
|
ignore_errors: yes
|
||||||
|
|
||||||
|
- name: Open output vrrp port for iptables
|
||||||
|
iptables:
|
||||||
|
chain: OUTPUT
|
||||||
|
jump: ACCEPT
|
||||||
|
protocol: vrrp
|
||||||
|
ignore_errors: yes
|
||||||
|
|
||||||
- name: Add syn_flood tasks
|
- name: Add syn_flood tasks
|
||||||
include_tasks: ../../haproxy/tasks/syn_flood.yml
|
include_tasks: ../../haproxy/tasks/syn_flood.yml
|
||||||
|
|
Loading…
Reference in New Issue