Compare commits

...

2 Commits

Author SHA1 Message Date
Mike Wilson
9ef90db07b Add tor and bitcoin-daemon steps 2025-09-05 17:03:39 -04:00
Mike Wilson
458506e798 Add step to enable ufw rules 2025-09-05 16:11:25 -04:00
3 changed files with 29 additions and 1 deletions

View File

@@ -0,0 +1,11 @@
- name: Install bitcoin daemon
ansible.builtin.package:
name: bitcoin-daemon
state: present
become: true
- name: Enable bitcoind
ansible.builtin.service:
name: bitcoind
state: started
enabled: yes

View File

@@ -0,0 +1,6 @@
- name: Install tor
ansible.builtin.package:
name: tor
state: present

View File

@@ -3,6 +3,11 @@
name: ufw name: ufw
state: present state: present
# UFW logging can full up the kernel (dmesg) and message logs
- name: Disable logging
community.general.ufw:
logging: 'off'
- name: Allow OpenSSH inbound - name: Allow OpenSSH inbound
community.general.ufw: community.general.ufw:
rule: allow rule: allow
@@ -14,8 +19,14 @@
port: ssh port: ssh
proto: tcp proto: tcp
- name: Enable ufw - name: Enable ufw system service
ansible.builtin.service: ansible.builtin.service:
name: ufw name: ufw
state: started state: started
enabled: yes enabled: yes
# This is necessary in addition to enabling the system service
- name: Enable ufw rules
community.general.ufw:
state: enabled
policy: deny