only run iptables-restore if config file is valid

This commit is contained in:
m0duspwnens
2023-07-26 16:31:22 -04:00
parent c1190064ad
commit 373298430b

View File

@@ -23,6 +23,10 @@ disable_firewalld:
iptables_restore: iptables_restore:
cmd.run: cmd.run:
- name: iptables-restore < /etc/sysconfig/iptables - name: iptables-restore < /etc/sysconfig/iptables
- require:
- file: iptables_config
- onlyif:
- iptables-restore --test /etc/sysconfig/iptables
enable_firewalld: enable_firewalld:
service.running: service.running: