From 3aef12c116a2fefd08976fd067aeb5b2afed8ed4 Mon Sep 17 00:00:00 2001
From: =?UTF-8?q?Rafael=20L=C3=A1szl=C3=B3?= <rlacko99@gmail.com>
Date: Wed, 28 Jul 2021 17:19:06 +0200
Subject: [PATCH] Update router spec, enable ip forwarding

---
 ansible/router/tasks/firewall.yaml | 6 ++++++
 ansible/router/tasks/main.yaml     | 1 -
 terraform/router.tf                | 2 +-
 3 files changed, 7 insertions(+), 2 deletions(-)

diff --git a/ansible/router/tasks/firewall.yaml b/ansible/router/tasks/firewall.yaml
index f8e91f0..3bcb73d 100644
--- a/ansible/router/tasks/firewall.yaml
+++ b/ansible/router/tasks/firewall.yaml
@@ -1,5 +1,11 @@
 ---
 
+- name: Enable IP Forwarding
+  ansible.posix.sysctl:
+    name: net.ipv4.ip_forward
+    value: '1'
+    state: present
+
 - name: Ensure nftables runs and enabled
   service:
     name: nftables
diff --git a/ansible/router/tasks/main.yaml b/ansible/router/tasks/main.yaml
index 454b163..ae0cfc1 100644
--- a/ansible/router/tasks/main.yaml
+++ b/ansible/router/tasks/main.yaml
@@ -30,4 +30,3 @@
 
 - name: Setup firewall
   include_tasks: firewall.yaml
-  tags: [firewall]
diff --git a/terraform/router.tf b/terraform/router.tf
index bb76beb..d41c8fa 100644
--- a/terraform/router.tf
+++ b/terraform/router.tf
@@ -10,7 +10,7 @@ resource "proxmox_lxc" "router" {
   vmid         = 9254
   start        = true
   memory       = 4096
-  cores        = 4 
+  cores        = 4
 
   ssh_public_keys  = local.ssh_keys
 
-- 
GitLab