aboutsummaryrefslogtreecommitdiffstats
path: root/roles/security
diff options
context:
space:
mode:
Diffstat (limited to 'roles/security')
-rw-r--r--roles/security/templates/pf.conf.j23
1 files changed, 2 insertions, 1 deletions
diff --git a/roles/security/templates/pf.conf.j2 b/roles/security/templates/pf.conf.j2
index 01d6d12..a2c1381 100644
--- a/roles/security/templates/pf.conf.j2
+++ b/roles/security/templates/pf.conf.j2
@@ -167,12 +167,13 @@ vpn_net = "{{ vpn.network4 }}/24"
# * http & https: web service
# * git: Git clone etc.
# * {{ shadowsocks.port }}: ShadowSocks server
+# * {{ znc.port }}: ZNC IRC bouncer (tcp)
# * {{ vpn.port }}: OpenVPN service (tcp & udp)
#
# For restrictive incoming rules
in_tcp_services_restricted = "{ {{ ansible_ssh_port }}, smtp, submission, imaps }"
# For non-restrictive incoming rules
-in_tcp_services = "{ domain, http, https, {{ vpn.port }}, {{ shadowsocks.port }} }"
+in_tcp_services = "{ domain, http, https, {{ shadowsocks.port }}, {{ znc.port }}, {{ vpn.port }} }"
# For incoming UDP rules
in_udp_services = "{ domain, {{ vpn.port }}, {{ ansible_ssh_port+1 }} }"
# For outgoing rules