From e586e4578311b22310c3ebf4541441cecd9d66ce Mon Sep 17 00:00:00 2001 From: Frederik Schwan <frederik.schwan@linux.com> Date: Wed, 23 Dec 2020 15:38:05 +0100 Subject: [PATCH] don't add docker to trusted zone Adding docker0 to a trusted zone creates issues with the latest docker pkg. The daemon handles firewalld itself and errors since the interface is already in zone trusted and thus can't be handled by it's own zone. --- roles/gitlab_runner/tasks/main.yml | 6 ------ 1 file changed, 6 deletions(-) diff --git a/roles/gitlab_runner/tasks/main.yml b/roles/gitlab_runner/tasks/main.yml index 0237083e6..531027a29 100644 --- a/roles/gitlab_runner/tasks/main.yml +++ b/roles/gitlab_runner/tasks/main.yml @@ -7,12 +7,6 @@ - name: start docker systemd: name=docker enabled=yes state=started daemon_reload=yes -- name: make docker0 interface trusted - ansible.posix.firewalld: interface=docker0 zone=trusted permanent=true state=enabled immediate=yes - when: configure_firewall - tags: - - firewall - - name: configure Docker daemon for IPv6 copy: src=daemon.json dest=/etc/docker/daemon.json owner=root group=root mode=0644 notify: restart docker -- GitLab