diff --git a/ansible/internet.yaml b/ansible/internet.yaml index 09b1d44..f5599ad 100644 --- a/ansible/internet.yaml +++ b/ansible/internet.yaml @@ -4,9 +4,12 @@ vars: ssh_server_ports: "{{ vault_ssh_server_ports }}" nginx_add_header: [] + sysctl_overwrite: + # Enable IPv4 traffic forwarding. + net.ipv4.ip_forward: 1 roles: - role: dev-sec.os-hardening - - role: dev-sec.ssh-hardening - - role: nginxinc.nginx - - role: dev-sec.nginx-hardening - - role: jnv.unattended-upgrades + # - role: dev-sec.ssh-hardening + # - role: nginxinc.nginx + # - role: dev-sec.nginx-hardening + # - role: jnv.unattended-upgrades