# Copyright 2021 The Kubernetes Authors.

# Licensed under the Apache License, Version 2.0 (the "License");
# you may not use this file except in compliance with the License.
# You may obtain a copy of the License at

# http://www.apache.org/licenses/LICENSE-2.0

# Unless required by applicable law or agreed to in writing, software
# distributed under the License is distributed on an "AS IS" BASIS,
# WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied.
# See the License for the specific language governing permissions and
# limitations under the License.
---
- name: Remove the default input reject all iptable rule
  lineinfile:
    path: /etc/iptables/rules.v4
    state: absent
    regexp: "-A INPUT -j REJECT --reject-with icmp-host-prohibited"
  when: ansible_distribution == "Ubuntu"

- name: Remove the default input reject all iptable rule
  lineinfile:
    path: /etc/iptables/rules.v4
    state: absent
    regexp: "-A FORWARD -j REJECT --reject-with icmp-host-prohibited"
  when: ansible_distribution == "Ubuntu"

- name: Disable firewalld service
  systemd:
    name: firewalld
    state: stopped
    enabled: false
  when: ansible_distribution == "OracleLinux"