Commit eed9c65
committed
refactor: [#246] Remove Grafana firewall configuration
Remove Grafana firewall configuration due to Docker bypassing UFW.
Discovery: Docker published ports bypass UFW firewall rules entirely.
Changes:
- Remove templates/ansible/configure-grafana-firewall.yml playbook
- Remove src/application/steps/system/configure_grafana_firewall.rs
- Remove ConfigureGrafanaFirewall from ConfigureStep enum
- Remove references from project_generator.rs, handler.rs, mod.rs
- Update issue spec to reflect removal and document security discovery
Rationale: UFW configuration provides false sense of security - Docker
modifies iptables directly. Proper solution requires reverse proxy with
TLS (roadmap task 6). See docs/issues/DRAFT-docker-ufw-firewall-security-strategy.md1 parent 7d56581 commit eed9c65
File tree
8 files changed
+55
-352
lines changed- docs/issues
- src
- application
- command_handlers/configure
- steps
- system
- domain/environment/state
- infrastructure/templating/ansible/template/renderer
- templates/ansible
8 files changed
+55
-352
lines changedLarge diffs are not rendered by default.
| Original file line number | Diff line number | Diff line change | |
|---|---|---|---|
| |||
8 | 8 | | |
9 | 9 | | |
10 | 10 | | |
11 | | - | |
12 | | - | |
| 11 | + | |
| 12 | + | |
13 | 13 | | |
14 | 14 | | |
15 | 15 | | |
| |||
218 | 218 | | |
219 | 219 | | |
220 | 220 | | |
221 | | - | |
222 | | - | |
223 | | - | |
224 | | - | |
225 | | - | |
226 | | - | |
227 | | - | |
228 | | - | |
229 | | - | |
230 | | - | |
231 | | - | |
232 | | - | |
233 | | - | |
234 | | - | |
235 | | - | |
236 | | - | |
237 | | - | |
238 | | - | |
239 | | - | |
240 | | - | |
241 | | - | |
242 | | - | |
243 | | - | |
244 | | - | |
245 | | - | |
246 | | - | |
247 | | - | |
248 | | - | |
249 | 221 | | |
250 | 222 | | |
251 | 223 | | |
| |||
| Original file line number | Diff line number | Diff line change | |
|---|---|---|---|
| |||
39 | 39 | | |
40 | 40 | | |
41 | 41 | | |
42 | | - | |
43 | | - | |
| 42 | + | |
| 43 | + | |
44 | 44 | | |
45 | 45 | | |
46 | 46 | | |
| |||
Lines changed: 0 additions & 149 deletions
This file was deleted.
| Original file line number | Diff line number | Diff line change | |
|---|---|---|---|
| |||
9 | 9 | | |
10 | 10 | | |
11 | 11 | | |
12 | | - | |
13 | 12 | | |
14 | 13 | | |
15 | 14 | | |
| |||
18 | 17 | | |
19 | 18 | | |
20 | 19 | | |
21 | | - | |
22 | 20 | | |
23 | 21 | | |
24 | 22 | | |
25 | 23 | | |
26 | 24 | | |
27 | | - | |
28 | 25 | | |
29 | 26 | | |
30 | 27 | | |
| Original file line number | Diff line number | Diff line change | |
|---|---|---|---|
| |||
51 | 51 | | |
52 | 52 | | |
53 | 53 | | |
54 | | - | |
55 | | - | |
56 | 54 | | |
57 | 55 | | |
58 | 56 | | |
| |||
Lines changed: 0 additions & 1 deletion
| Original file line number | Diff line number | Diff line change | |
|---|---|---|---|
| |||
307 | 307 | | |
308 | 308 | | |
309 | 309 | | |
310 | | - | |
311 | 310 | | |
312 | 311 | | |
313 | 312 | | |
| |||
This file was deleted.
0 commit comments