From ddc2a1f327bfc7940abf85e9948bd9c126bca7f9 Mon Sep 17 00:00:00 2001 From: Jan Beilicke Date: Sat, 2 May 2020 21:00:29 +0200 Subject: [PATCH] Removing disabling of iptables for Docker as doing so causes a lot of pain --- tasks/main.yml | 31 ------------------------------- 1 file changed, 31 deletions(-) diff --git a/tasks/main.yml b/tasks/main.yml index 8999273..2e8a3be 100644 --- a/tasks/main.yml +++ b/tasks/main.yml @@ -1,37 +1,6 @@ --- # tasks file for traefik -- name: Ensure systemd docker.service.d directory exists - file: - path: "/etc/systemd/system/docker.service.d/" - state: directory - owner: root - group: root - mode: '0755' - tags: firewall - -- name: Provide systemd config to disable Docker's tampering with the firewall - copy: - dest: /etc/systemd/system/docker.service.d/noiptables.conf - owner: root - group: root - mode: '0644' - content: | - [Service] - ExecStart= - ExecStart=/usr/bin/dockerd -H fd:// --iptables=false - tags: firewall - register: docker_restart_required - -- name: Restart docker service to pickup config changes - systemd: - name: docker - daemon_reload: yes - state: restarted - become: true - when: docker_restart_required.changed - tags: firewall - - name: Ensure traefik config directory exists file: path: /home/{{ docker_user }}/traefik