NTPD : Listen only on lo interface by default

This commit is contained in:
Gregory Colpart 2017-07-17 14:21:32 +02:00
parent 7d4e388141
commit a189b7935b
3 changed files with 15 additions and 0 deletions

View file

@ -95,6 +95,7 @@ evolinux_system_alert5_init: True
evolinux_system_alert5_enable: True
evolinux_system_eni_auto: True
evolinux_system_ntprestrict: True
evolinux_system_set_ntpserver: True
evolinux_system_ntpserver: "ntp.evolix.net"

View file

@ -71,3 +71,8 @@
service:
name: postfix
state: reloaded
- name: restart ntp
service:
name: ntp
state: restarted

View file

@ -112,7 +112,15 @@
- {regexp: '^52\s*6(\s*1(\s*\*){2})', replace: '{{ 59|random(start=1) }} {{ [0,1,3,4,5,6,7]|random }}\1', backup: "no"}
when: evolinux_system_cron_random
# NTP listen retriction
- name: Listen only on lo interface
# NTP server address
lineinfile:
dest: /etc/ntp.conf
line: "interface ignore wildcard"
notify: restart ntp
when: evolinux_system_ntprestrict
- name: Configure NTP
replace:
@ -120,6 +128,7 @@
regexp: "^server .*$"
replace: "server {{ evolinux_system_ntpserver }}"
backup: yes
notify: restart ntp
when: evolinux_system_set_ntpserver
## alert5