diff --git a/roles/custom/fvs/tasks/main.yml b/roles/custom/fvs/tasks/main.yml index a6a38ef..db9e129 100644 --- a/roles/custom/fvs/tasks/main.yml +++ b/roles/custom/fvs/tasks/main.yml @@ -251,12 +251,5 @@ KERNEL=="mmcblk[0-9]", ENV{ID_NAME}=="?*", ENV{ID_SERIAL}=="?*", GROUP="domain users" KERNEL=="mmcblk[0-9]p[0-9]*", ENV{ID_NAME}=="?*", ENV{ID_SERIAL}=="?*", GROUP="domain users" -- name: Set KiCad 3Dmodel path - ansible.builtin.lineinfile: - path: /etc/environment.d/90lmn-kicad.conf - create: true - mode: '0644' - line: KICAD9_3DMODEL_DIR=/lmn/tools/KiCad/kicad-packages3D - - name: Include sync ansible.builtin.include_tasks: sync.yml diff --git a/roles/lmn_exam/templates/no-way-out-nftable.j2 b/roles/lmn_exam/templates/no-way-out-nftable.j2 index 93305a9..2c6efb8 100644 --- a/roles/lmn_exam/templates/no-way-out-nftable.j2 +++ b/roles/lmn_exam/templates/no-way-out-nftable.j2 @@ -13,17 +13,15 @@ ${filterchain} chain filterin_${interface} { type filter hook ingress device ${interface} priority filter; policy drop; ip saddr \$allowed_ipv4 accept - ip saddr ${gateway} accept - ip saddr 255.255.255.255 accept - ether type arp accept + ip saddr ${gateway} accept; + ip saddr 255.255.255.255 accept; } chain filterout_${interface} { type filter hook egress device ${interface} priority filter; policy drop; ip daddr \$allowed_ipv4 accept - ip daddr ${gateway} accept - ip daddr 255.255.255.255 accept - ether type arp accept + ip daddr ${gateway} accept; + ip daddr 255.255.255.255 accept; } EOF )