mirror of
https://gitlab.sectorq.eu/jaydee/ansible.git
synced 2026-03-13 05:42:46 +01:00
This commit is contained in:
@@ -145,6 +145,36 @@
|
|||||||
register: join_command
|
register: join_command
|
||||||
when: inventory_hostname == 'rocky9-vm01.home.lan'
|
when: inventory_hostname == 'rocky9-vm01.home.lan'
|
||||||
|
|
||||||
|
- name: Ensure firewalld is running
|
||||||
|
ansible.builtin.service:
|
||||||
|
name: firewalld
|
||||||
|
state: started
|
||||||
|
enabled: true
|
||||||
|
when: inventory_hostname == 'rocky9-vm01.home.lan'
|
||||||
|
|
||||||
|
- name: Open Kubernetes API server port (6443)
|
||||||
|
ansible.posix.firewalld:
|
||||||
|
port: 6443/tcp
|
||||||
|
permanent: yes
|
||||||
|
state: enabled
|
||||||
|
immediate: yes
|
||||||
|
when: inventory_hostname == 'rocky9-vm01.home.lan'
|
||||||
|
|
||||||
|
- name: Open etcd ports (2379-2380)
|
||||||
|
ansible.posix.firewalld:
|
||||||
|
port: 2379-2380/tcp
|
||||||
|
permanent: yes
|
||||||
|
state: enabled
|
||||||
|
immediate: yes
|
||||||
|
when: inventory_hostname == 'rocky9-vm01.home.lan'
|
||||||
|
|
||||||
|
- name: Open kubelet and scheduler ports (10250-10252)
|
||||||
|
ansible.posix.firewalld:
|
||||||
|
port: 10250-10252/tcp
|
||||||
|
permanent: yes
|
||||||
|
state: enabled
|
||||||
|
immediate: yes
|
||||||
|
when: inventory_hostname == 'rocky9-vm01.home.lan'
|
||||||
|
|
||||||
- name: Save join command
|
- name: Save join command
|
||||||
set_fact:
|
set_fact:
|
||||||
|
|||||||
Reference in New Issue
Block a user